Multichannel Authentication via Digital Signatures

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing communication systems, particularly IP-based networks, face security challenges in authenticating identities and protecting communications over multiple channels, as they are susceptible to call interception, speech manipulation, and impersonation due to the open nature of digital communication schemes, leading to risks in multimodal interactions and session hijacking.

Innovation Solution

A method and system that utilize digital signatures for each communication channel and device, with a certificate authority for verification, ensuring each party provides unique signatures for each channel and device, enabling secure authentication and ongoing verification across multiple communication channels.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If digital communication schemes such as VoIP are used to enable open network communication, then communication convenience and accessibility are improved, but security against interception and manipulation deteriorates

Engineering Contradiction:
Improvecommunication convenienceVSAvoidcall interception and speech manipulation
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary authentication by obtaining and verifying digital signatures from certificate authorities before establishing communication channels. This preliminary security measure ensures that parties are authenticated before any actual communication occurs, preventing interception and manipulation while maintaining open network accessibility

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces certificate authorities as intermediary entities that issue digital signatures to authenticate communication parties. These intermediaries provide trusted verification without requiring direct trust between communicating parties, enabling secure open network communication through a trusted third-party mechanism

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If multiple communication channels are supported simultaneously in multimodal systems, then communication versatility is improved, but authentication complexity and security risks worsen

Engineering Contradiction:
Improvemultimodal communication capabilityVSAvoidauthentication complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The system implements a universal authentication mechanism using digital signatures that works across all communication channels and modes (voice, video, text). Instead of requiring separate authentication for each channel, a single signature verification process authenticates all parties across multiple simultaneous channels, reducing overall complexity while maintaining versatility

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The authentication process is segmented into distinct components: obtaining signatures from certificate authorities, verifying signatures for each party, and establishing authenticated channels. This segmentation allows the complex authentication process to be broken down into manageable steps that can be applied consistently across multiple communication channels

Inventive Principle:
Principle #1Segmentation

3Reliability

If traditional voice-based communications relied on closed networks, then security against interception was maintained, but network adaptability and modern communication support deteriorated

Engineering Contradiction:
Improvesecurity against interceptionVSAvoidsupport for modern IP-based communications
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent replaces the mechanical closed-network architecture with a digital signature-based authentication system that operates over open IP networks. Instead of relying on physical network closure for security, the system uses cryptographic verification to maintain security while enabling modern packet-switched communication protocols

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Data Source

PatentUS9112910B2Method and system for authentication
Publication Date: 2015.08.18 KYNDRYL INC
  • US9112910B2 patent drawing
  • US9112910B2 patent drawing
  • US9112910B2 patent drawing

AI summary

A method and system of authenticating communications sessions between two or more parties over one or more simultaneous communications channels using one or more communicating devices is provided including having a first party create a first set of signatures, wherein the first set of signatures includes a signature for each communications channel, communicating with at a second party over at least one communications channel, whereby the second party authenticates the first party's signature associated with the at least one communications channel and accepts communication with the first party.