PKI Authentication Chain for Multi-Party Wearable Transactions
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing user authentication methods, particularly in IoT and metaverse environments, face challenges with security breaches due to the ease of loss, theft, or interception of IDs, passwords, and biometric data, and the need for enhanced security in multi-party transactions where PKI-based methods require numerous certificates.
Innovation Solution
A chain of authentication method using public key infrastructure (PKI) that generates modified public keys incorporating authentication information from multiple parties, minimizing the number of required certificates and embedding biometric-based security at the certificate level, allowing stricter control by the issuing authority.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional PKI-based authentication methods are used for multi-party transactions, then authentication between individual parties can be achieved, but the number of required certificates increases significantly
Solution Approach 1:
The patent merges multiple individual authentication relationships into a single group authentication certificate. Instead of requiring separate certificates for each party pair, the invention creates one collective certificate that binds multiple parties together, thereby reducing the total number of certificates needed while maintaining authentication security among all group members
Solution Approach 2:
The group authentication certificate serves multiple authentication purposes simultaneously. A single certificate enables any member of the authenticated group to verify the identity of any other member, providing universal authentication capability across all parties without requiring party-specific certificate pairs
2Ease of operation
If traditional authentication methods using ID, password, or biometric data are used, then user verification can be performed, but security is vulnerable to loss, theft, or interception
Solution Approach 1:
The patent replaces traditional mechanical authentication methods (physical IDs, written passwords, biometric scans) with cryptographic key pairs. Instead of relying on physical or biological traits that can be lost or stolen, the invention uses mathematical key pairs where the private key remains securely stored in the user's device and the public key can be freely shared without security risk
Solution Approach 2:
The invention allows the public key to be freely copied and distributed among multiple parties without compromising security. Unlike passwords or biometric data that become vulnerable when copied or intercepted, public keys can be replicated indefinitely while the corresponding private key remains the sole secret that provides authentication capability
Data Source
AI summary
A method for sequential authentication based on chain of authentication using public key infrastructure (PKI) is provided. The method includes abutting a first wearable device belonging to a first party with a second wearable device belonging to a second party; transmitting, by the first wearable device, authentication information of the first party; verifying the authentication information of the first party; transmitting, by the second wearable device, authentication information of the second party; verifying the authentication information of the second party; authorizing electronic transaction in response to successfully verifying both the authentication information of the first party and the authentication information of the second party. Each of the authentication information of the first party and the authentication information of the second party includes information configured for authentication based on a public key infrastructure (PKI) certificate.


