Privacy-Preserving Credential Issuance via Separator Redirect
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing identity federation protocols compromise user privacy by allowing identity providers to track online activities and behavior, even when using privacy-preserving credential systems like U-Prove and Idemix, as they often learn details about service provider interactions.
Innovation Solution
A method and system that utilize a separator to redirect credential requests and status messages, separating the identity provider from the service provider, and using a smart card or security device to generate and store privacy-preserving credentials, ensuring that the identity provider does not learn how the user intends to use the credentials, thereby maintaining user privacy.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If existing identity federation protocols are used to enable seamless user experience and convenient access to services, then user convenience and service accessibility are improved, but user privacy is compromised as identity providers can track online activities and behavior
Solution Approach 1:
The patent introduces a credential issuer as an intermediary component that separates the identity verification function from the service provider. The credential issuer issues credentials to users without revealing their identity or behavior patterns to service providers, thereby mediating between user convenience and privacy protection. This intermediary role prevents direct tracking while enabling seamless service access.
Solution Approach 2:
The system segments the identity management process into distinct functional components: credential issuance, credential verification, and service delivery. By separating these functions and using different communication channels for each, the patent prevents service providers from obtaining complete information about user behavior while maintaining convenient access to services.
2Adaptability or versatility
If identity providers disclose personal information to service providers to enable service delivery, then service functionality is improved, but user privacy control deteriorates as users cannot prevent information disclosure
Solution Approach 1:
The patent implements selective disclosure where credentials contain different types of information that can be revealed locally to specific service providers based on their legitimate needs. Each service provider receives only the specific attribute information required for their service, not the user's complete personal information profile, thereby maintaining both service functionality and user privacy control.
3Loss of information
If privacy-preserving credential systems like U-Prove and Idemix are used to protect user identity and behavior, then user privacy is improved, but integration complexity increases as effective integration into the identity ecosystem remains challenging
Solution Approach 1:
The patent designs a credential system that can function universally across different service providers and identity management contexts. The credential structure and verification process are designed to be protocol-agnostic and can be integrated into existing identity ecosystems without requiring complete system redesign, thereby reducing integration complexity while maintaining strong privacy protection.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Method and System for enhanced privacy in privacy-preserving identity solutions. The technology provides for a redirect of a request to generate a proof of an attribute from a service provider to a separator. The separator removes source identification from the attribute-proof request and redirects the attribute-proof request, free of original source identification, to a credential issuer which issues the credential. A security device of the user generates a presentation token from the privacy-preserving credential and presents the presentation token to the service provider as proof of the attribute. Other systems and methods are disclosed.