Passwordless Access Protocol With PLSI Handshake for Critical Infrastructure

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current password-based access methods for critical computing infrastructures are vulnerable to misappropriation and data leakage, as passwords generated randomly can be exploited by third parties, necessitating complex monitoring and increased computing resources.

Innovation Solution

A password-less service identification (PLSI) protocol that generates a unique, encrypted connection using a customizable digest generator, ensuring secure access to critical computing infrastructures by validating user identity through a PLSI handshake and destructing the identification upon completion.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If password authentication protocol is used to send generated password in data packets for server authentication, then user access to critical computing infrastructure is enabled, but the system becomes vulnerable to third party access and misappropriation

Engineering Contradiction:
Improveuser accessVSAvoidthird party access vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent extracts the password from the authentication process entirely. Instead of transmitting passwords in data packets, the system uses a passwordless authentication mechanism where the client device proves its identity through cryptographic verification without exposing secret credentials, thereby eliminating the vulnerability to third-party interception.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an intermediary authentication mechanism that mediates between the client device and server. The server validates the client device through a verification process involving cryptographic signatures and tokens, acting as an intermediary that enables authentication without direct password transmission, thus preventing third-party misappropriation.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If third party password generation mechanisms are used, then password generation functionality is provided, but information about server IP and login information may be obtained by third parties

Engineering Contradiction:
Improvepassword generation functionalityVSAvoidserver IP and login information leakage
Core Design Contradiction:
Adaptability or versatilityVSLoss of information

Solution Approach 1:

The patent extracts the password generation and storage functionality from third-party mechanisms entirely. The system implements client-side cryptographic key generation and token-based authentication that does not require third-party password management services, thereby eliminating the risk of sensitive information leakage to external providers.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The client device performs self-service authentication by generating and managing its own cryptographic credentials locally. The device creates digital signatures and authentication tokens without external password generation services, maintaining full control over sensitive information and preventing third-party access to server credentials.

Inventive Principle:
Principle #25Self-service

3Reliability

If constant monitoring of third party password generation mechanisms is implemented, then data leakage is prevented, but complexity, computing power, and expenses increase

Engineering Contradiction:
Improvedata leakage preventionVSAvoidsecurity monitoring complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the need for continuous monitoring by eliminating third-party password generation mechanisms entirely. The system uses inherent cryptographic verification in the authentication protocol itself, where security is built into the protocol design rather than requiring external monitoring and management overhead.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS12627651B2Secure password less critical computing infrastructure access communication network protocol
Publication Date: 2026.05.12 BANK OF AMERICA CORP
  • US12627651B2 patent drawing
  • US12627651B2 patent drawing
  • US12627651B2 patent drawing

AI summary

Systems, computer program products, and methods are described herein for a password less service identification protocol (PLSI). The PLSI protocol is a protocol and procedures that allow access to the full security layer of the critical computing infrastructure for complete secure access. There are four processes associated with the PLSI protocol including access initiation, PLSI service identification generation, PLSI handshake process, and PLSI service identification destruction. The secure password less critical computing infrastructure access communication network protocol can be used to utilize secure connection devices, to access critical production servers or databases where in the required security and compliance to segregation of duty based on entitlement, to establish a secure connection between two or more autonomous devices initiating, to establish secure connection on distributed cloud infrastructure, and/or to access node in block chain network to process the transaction.