Primary Account Number Identity Verification via Biometric Cipher
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current systems for identity and authentication lack security and convenience, particularly in transitioning from physical to virtual transactions, and fail to effectively utilize existing infrastructure for identifying and authenticating individuals rather than accounts.
Innovation Solution
The use of extended Primary Account Numbers (PANs) for identity authentication, combined with biometric data and blockchain technology, to create a unique cipher with multiple keys for secure and anonymous identity verification across various platforms and devices, allowing access to physical and digital facilities.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional account-based identification systems are used, then existing payment infrastructure can be leveraged, but security is compromised and sensitive information must be stored
Solution Approach 1:
The patent introduces PANs as intermediary tokens that mediate between identity verification and transaction processing. These PANs do not directly expose sensitive account information but serve as secure representatives that can be routed through existing payment infrastructure. The system uses multiple PANs (primary PAN, secondary PANs, tokenized PANs) as intermediaries to differentiate between identification, authentication, and transaction functions, thereby enhancing security without requiring complete system redesign
Solution Approach 2:
The patent segments the identification and authentication process into multiple independent components: primary account numbers for identification, biometric data for authentication, and separate transaction processing. This segmentation allows each component to be optimized independently - PANs can be routed through existing infrastructure while biometric verification provides enhanced security without compromising either function
2Reliability
If biometric data and multiple keys are implemented, then security is enhanced, but the system becomes more complex
Solution Approach 1:
The patent divides the security system into segmented functional layers: biometric data collection and storage, PAN generation and management, key generation and distribution, and transaction processing. Each layer operates independently with defined interfaces, allowing the system to achieve high security through multiple mechanisms while maintaining manageable complexity through modular architecture
Solution Approach 2:
The system implements self-service mechanisms where users can register their own biometric data, receive their PANs, and manage their authentication credentials without requiring manual intervention for each transaction. The automated PAN generation and key distribution systems reduce operational complexity while maintaining enhanced security
3Reliability
If PANs are used for identity verification instead of account identification, then security improves, but compatibility with existing systems may be reduced
Solution Approach 1:
The patent designs PANs to serve multiple functions universally: they can be used for identification, authentication, routing transactions through existing payment networks, and accessing services. The same PAN infrastructure supports both traditional payment processing and enhanced biometric-based identity verification, making the system adaptable to various applications while maintaining security improvements
Solution Approach 2:
PANs act as universal intermediaries that bridge between legacy account-based systems and modern identity verification requirements. The PAN structure allows existing payment processors and infrastructure to continue operating while adding layers of biometric authentication and enhanced security protocols, ensuring backward compatibility while enabling new capabilities
Data Source
AI summary
A system and method is provided to register a user; assign a primary account number (PAN) to the user; create an account; create a unique cipher with keys; link, by a trusted source of identification, the PAN to an attribute of the user and to the account; receive the keys at a user device; remove the keys; generate data by a third-party to request the user to perform a transaction; present the PAN to the third-party; receive a transaction request detail; receive the data at a transaction processor based on a unique identifier of the PAN; identify the user using the unique identifier; authenticate the user; request, by the transaction processor, the device to release a key associated with the transaction request detail; decrypt stored information; and send a response, including the decrypted stored information, from the transaction processor to the third-party, thereby identifying the user.


