NFC Security Token with Pre-generated Keys for Fast Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing security tokens cannot be securely and conveniently used in both PC and smartphone environments, and they take too long to generate 2048-bit private and public key pairs, making them inefficient for modern certificate authentication systems.

Innovation Solution

A security token with a security chip that includes a key pair generation module, digital signature module, internal memory, and NFC module, allowing pre-generation of private and public key pairs and digital signatures in a smartphone environment by dividing the generation processes into sub-processes, and using NFC for communication without requiring a battery.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the RSA algorithm is improved from 1024-bit to 2048-bit for better security, then security strength is improved, but key pair generation time increases from 2-3 seconds to 20-30 seconds

Engineering Contradiction:
Improvesecurity strengthVSAvoidkey pair generation time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent applies preliminary action by pre-generating and storing multiple key pairs in the security token before they are needed. When authentication is required, the system selects from pre-generated key pairs rather than generating new ones in real-time, thus avoiding the time-consuming 20-30 second generation process while maintaining 2048-bit security strength

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent segments the key pair generation process into multiple batches, generating multiple key pairs in advance and storing them in the security token. This segmentation allows the system to perform quick key selection from pre-generated pairs rather than performing a single long generation process when authentication is needed

Inventive Principle:
Principle #1Segmentation

2Reliability

If the security token stores certificate in security chip for better security, then hacking resistance is improved, but compatibility with smartphone environment is lost

Engineering Contradiction:
Improvehacking resistanceVSAvoidsmartphone compatibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent applies universality by designing a security token that can function in multiple environments - both PC and smartphone. The token maintains its secure certificate storage in a security chip while adding NFC communication capability, allowing it to serve as a universal security device across different platforms without compromising security or compatibility

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If NFC module is added for smartphone compatibility, then adaptability is improved, but power consumption increases in low-power NFC environment

Engineering Contradiction:
Improvesmartphone compatibilityVSAvoidpower consumption
Core Design Contradiction:
Adaptability or versatilityVSUse of energy by moving object

Solution Approach 1:

The patent applies preliminary action by pre-generating and storing key pairs before authentication operations. This reduces the computational load and power consumption during NFC-based authentication in smartphone environment, as the system selects from pre-generated keys rather than performing intensive cryptographic operations in real-time on the power-constrained NFC interface

Inventive Principle:
Principle #10Preliminary action

Applied Scientific Principles

This section explains which scientific principles are used to turn an abstract innovation direction into a practical engineering solution.

Function Achieved in This Case

Enables secure and convenient certificate authentication in both PC and smartphone environments, reduces key pair generation time, and efficiently generates digital signatures in low-power NFC environments, improving user experience and security.

Implementation Method 1

a near field communication (NFC) module for performing NFC with a wireless terminal

Methodology Applied
Scientific EffectNear field communication (NFC): Electromagnetic Induction

Data Source

PatentUS10063381B2Security token for certificate authentication and driving method therefor
Publication Date: 2018.08.28 KEYPAIR CO LTD
  • US10063381B2 patent drawing
  • US10063381B2 patent drawing
  • US10063381B2 patent drawing

AI summary

The present invention relates to a security token for certificate authentication and a driving method thereof. The security token for certificate authentication, according to the present invention, comprises a security chip comprising: a key pair generation module for generating a pair of a private key and a public key for an authentication certificate; a digital signature module for generating a digital signature on the basis of the authentication certificate; an internal memory for storing the authentication certificate, the private and the public key; a near field communication (NFC) module for performing NFC with a wireless terminal; and a controller for controlling the key pair generation module, the digital signature module, the internal memory, and the NFC module.