Passwordless Authentication Structure for Multi-Factor Login
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Users face difficulties in managing multiple passwords and usernames for different service provider accounts, leading to inefficiencies and security risks due to the complexity and requirement of periodic changes, which can result in lost business opportunities and user dissatisfaction.
Innovation Solution
A method and system that allows users to select password-less sign-in alternatives after initial login, requiring multiple data inputs to enable subsequent password-free access, enhancing security through multi-factor authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If users are required to provide usernames and passwords for each service provider account, then security is maintained, but user convenience and time efficiency deteriorate due to the complexity of managing multiple credentials
Solution Approach 1:
The patent introduces a credential manager system as an intermediary that stores and manages usernames and passwords for multiple service provider accounts. This mediator handles the complexity of credential management, allowing users to access accounts without directly managing multiple passwords, thus improving convenience while maintaining security through centralized management with audit trails.
Solution Approach 2:
The system creates copies of credential information in an encrypted storage medium, allowing users to access their credentials through a user interface without exposing the actual passwords. This enables secure access to multiple accounts while simplifying user interaction, as users work with interface representations rather than managing raw credential strings.
2Reliability
If users must remember or retrieve multiple different passwords periodically, then account security is maintained, but time efficiency deteriorates due to the time spent retrieving and updating passwords
Solution Approach 1:
The credential manager performs preliminary actions by pre-storing encrypted credential information and pre-configuring access methods. Users can immediately access their credentials through the interface without needing to retrieve or update passwords in real-time, eliminating the time loss associated with periodic password changes and retrieval operations.
Solution Approach 2:
The system enables self-service credential management where the credential manager automatically handles password updates, retrieval, and security operations without requiring user intervention. This eliminates the time users would otherwise spend manually managing password rotations and retrievals across multiple accounts.
3Ease of operation
If users store passwords for later retrieval, then accessibility is improved, but security deteriorates due to the risk of password exposure to third parties
Solution Approach 1:
The credential manager acts as a secure intermediary between users and their stored passwords. It provides encrypted storage and controlled access through a user interface, preventing direct exposure of passwords to third parties while maintaining accessibility for authorized users. The mediator layer ensures that even if the interface is accessed, the actual credential data remains protected.
Solution Approach 2:
The system uses encrypted copies of credential data stored in a secure medium, allowing users to access their passwords through the interface without storing unencrypted versions accessible to third parties. The encrypted copies maintain accessibility for authorized users while eliminating the security risks associated with storing plain-text passwords.
4Reliability
If different account interfaces apply different username and password formulation requirements, then account-specific security is maintained, but ease of operation deteriorates due to the inability to use common formats
Solution Approach 1:
The credential manager provides universal access to multiple service provider accounts with different credential requirements. It maintains account-specific security by storing and retrieving credentials according to each account's requirements, while presenting a unified user interface that works across all accounts, eliminating the need for users to adapt to different password formats and requirements.
Data Source
AI summary
Embodiments present different password-less sign-in alternatives for selection by the user for a subsequent future login to the service provider account interface, and in response to determining that data inputs from a user satisfy associated data requests, enable the selected password-less sign-in alternative for a subsequent login of the user into the service provider account interface, wherein the subsequent login of the user into service provider account interface via the enabled selected password-less sign-in alternative does not require the user to enter the password.


