Portable Device Login Management via Encryption
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing login methods for web services and applications are inconvenient as they require users to manage and input multiple login credentials across different devices, and cloud-based password managers are vulnerable to security threats due to the storage of sensitive information in external, unmanaged devices.
Innovation Solution
A method and apparatus that uses a portable device to securely manage and transmit login information across multiple user terminals, encrypting credentials and storing them in a physically secure space, reducing the need for direct input and minimizing the risk of hacking by avoiding external storage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If cloud-based password manager is used to store login information in external server, then user convenience is improved, but security is worsened due to vulnerability to attacks
Solution Approach 1:
The patent introduces a portable device as an intermediary between the user terminal and the cloud server. The portable device stores login information locally and transmits it to the user terminal, acting as a secure mediator that eliminates the need for cloud-based storage while maintaining convenience. This resolves the contradiction by replacing the insecure cloud storage intermediary with a secure local storage device.
2Reliability
If password manager is installed on each user terminal for local storage, then security is improved, but user convenience is worsened due to need to install and manage on multiple devices
Solution Approach 1:
The patent makes the portable device universal by enabling it to be registered and used across multiple user terminals. The portable device maintains a single secure storage location for login information that can be accessed by any registered terminal, eliminating the need to install separate password managers on each device. This resolves the contradiction by providing multi-terminal access through a single universal portable device.
3Ease of operation
If login information is transmitted through network to external devices, then ease of access is improved, but risk of hacking and leakage is worsened
Solution Approach 1:
The patent performs preliminary action by encrypting login information before transmission and establishing secure communication channels in advance. The portable device encrypts login information using public key cryptography before transmitting to the user terminal, and the terminal establishes secure HTTPS connections to servers. This preliminary encryption and security setup reduces the risk of hacking during transmission while maintaining ease of access.
Data Source
Figure 1~2
Figure 3
Figure 4
AI summary
A method of supporting a login for a web service of a user terminal using a portable device is provided. The method includes registering the portable device through a wireless communication with the portable device, encrypting login information for at least one web service and transmitting the login information to the registered portable device, and transmitting a request message requesting a transmission of the login information of the web service to the portable device. The request message includes a service identification (ID) identifying the web service.