Portable Device Login Management via Encryption

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing login methods for web services and applications are inconvenient as they require users to manage and input multiple login credentials across different devices, and cloud-based password managers are vulnerable to security threats due to the storage of sensitive information in external, unmanaged devices.

Innovation Solution

A method and apparatus that uses a portable device to securely manage and transmit login information across multiple user terminals, encrypting credentials and storing them in a physically secure space, reducing the need for direct input and minimizing the risk of hacking by avoiding external storage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If cloud-based password manager is used to store login information in external server, then user convenience is improved, but security is worsened due to vulnerability to attacks

Engineering Contradiction:
Improveuser convenienceVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a portable device as an intermediary between the user terminal and the cloud server. The portable device stores login information locally and transmits it to the user terminal, acting as a secure mediator that eliminates the need for cloud-based storage while maintaining convenience. This resolves the contradiction by replacing the insecure cloud storage intermediary with a secure local storage device.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If password manager is installed on each user terminal for local storage, then security is improved, but user convenience is worsened due to need to install and manage on multiple devices

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent makes the portable device universal by enabling it to be registered and used across multiple user terminals. The portable device maintains a single secure storage location for login information that can be accessed by any registered terminal, eliminating the need to install separate password managers on each device. This resolves the contradiction by providing multi-terminal access through a single universal portable device.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Ease of operation

If login information is transmitted through network to external devices, then ease of access is improved, but risk of hacking and leakage is worsened

Engineering Contradiction:
Improveease of accessVSAvoidrisk of hacking
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent performs preliminary action by encrypting login information before transmission and establishing secure communication channels in advance. The portable device encrypts login information using public key cryptography before transmitting to the user terminal, and the terminal establishes secure HTTPS connections to servers. This preliminary encryption and security setup reduces the risk of hacking during transmission while maintaining ease of access.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP3123660B1Method and apparatus for supporting login through user terminal
Publication Date: 2021.02.17 SAMSUNG ELECTRONICS CO LTD
  • EP3123660B1 patent drawingFigure 1~2
  • EP3123660B1 patent drawingFigure 3
  • EP3123660B1 patent drawingFigure 4

AI summary

A method of supporting a login for a web service of a user terminal using a portable device is provided. The method includes registering the portable device through a wireless communication with the portable device, encrypting login information for at least one web service and transmitting the login information to the registered portable device, and transmitting a request message requesting a transmission of the login information of the web service to the portable device. The request message includes a service identification (ID) identifying the web service.