Portable Terminal Authentication via Dynamic Code Requests
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing user authentication technologies for portable terminals using auxiliary authentication apparatuses do not adequately address the risk of interception and wiretapping of authentication information, compromising security.
Innovation Solution
A user authentication system that includes a main body device and an authentication device, where the main body device generates an authentication code transmission request with a unique first value each time, and the authentication device responds with an authentication code that is verified by the main body device to ensure secure authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If authentication information is transmitted and received wirelessly between the portable terminal and auxiliary authentication apparatus, then user authentication can be performed without cumbersome operation, but the authentication information becomes vulnerable to interception and wiretapping
Solution Approach 1:
The patent applies dynamics by making the authentication code change dynamically with each authentication request. The code generation unit generates a different authentication code for each request based on request-specific parameters, ensuring that even if one code is intercepted, it cannot be reused for subsequent authentications. This dynamic approach resolves the contradiction by maintaining ease of wireless authentication while protecting against interception risks.
Solution Approach 2:
The patent changes parameters by incorporating request-specific parameters into the authentication code generation process. Each authentication request includes unique parameters that influence the generated code, making each code distinct and unpredictable. This parameter change strategy allows wireless authentication to remain convenient while significantly increasing security against interception and replay attacks.
2Productivity
If the same authentication code is used for multiple authentication requests, then the authentication process is simple and fast, but the security is compromised because intercepted codes can be reused
Solution Approach 1:
The system maintains high authentication speed while implementing dynamic code generation. The code generation unit quickly produces unique codes for each request based on the included parameters, and the verification unit efficiently checks these codes. This dynamic approach ensures that authentication remains fast and productive while eliminating security vulnerabilities associated with code reuse.
Solution Approach 2:
The patent introduces request-specific parameters as an intermediary element in the authentication process. These parameters mediate between the authentication request and the generated code, ensuring that each code is uniquely tied to its specific request. This intermediary mechanism allows the system to maintain high productivity through efficient code generation and verification while ensuring reliability by preventing code reuse attacks.
Data Source
AI summary
A user authentication system includes a main body device and an authentication device. The main body device has an authentication code transmission requesting unit, a verification unit, and an unlocking unit. The authentication code transmission requesting unit generates an authentication code transmission request including a first value, and transmits the authentication code transmission request to the authentication device. The authentication device generates an authentication code in response to the first value in the authentication code transmission request, and transmits the authentication code to the main body device. The verification unit determines that authentication is successful if the authentication code is received from the authentication device. When the verification unit determines that the authentication is successful, the unlocking unit enables a predetermined functionality.


