Privacy-Preserving Credential Issuance via Separator Redirect

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing identity federation protocols compromise user privacy by allowing identity providers to track online activities and behavior, even when using privacy-preserving credential systems like U-Prove and Idemix, as they often learn details about service provider interactions.

Innovation Solution

A method and system that utilize a separator to redirect credential requests and status messages, separating the identity provider from the service provider, and using a smart card or security device to generate and store privacy-preserving credentials, ensuring that the identity provider does not learn how the user intends to use the credentials, thereby maintaining user privacy.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If existing identity federation protocols are used to enable seamless user experience and convenient access to services, then user convenience and service accessibility are improved, but user privacy is compromised as identity providers can track online activities and behavior

Engineering Contradiction:
Improveuser convenienceVSAvoiduser privacy
Core Design Contradiction:
Ease of operationVSLoss of information

Solution Approach 1:

The patent introduces a credential issuer as an intermediary component that separates the identity verification function from the service provider. The credential issuer issues credentials to users without revealing their identity or behavior patterns to service providers, thereby mediating between user convenience and privacy protection. This intermediary role prevents direct tracking while enabling seamless service access.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system segments the identity management process into distinct functional components: credential issuance, credential verification, and service delivery. By separating these functions and using different communication channels for each, the patent prevents service providers from obtaining complete information about user behavior while maintaining convenient access to services.

Inventive Principle:
Principle #1Segmentation

2Adaptability or versatility

If identity providers disclose personal information to service providers to enable service delivery, then service functionality is improved, but user privacy control deteriorates as users cannot prevent information disclosure

Engineering Contradiction:
Improveservice functionalityVSAvoiduser privacy control
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent implements selective disclosure where credentials contain different types of information that can be revealed locally to specific service providers based on their legitimate needs. Each service provider receives only the specific attribute information required for their service, not the user's complete personal information profile, thereby maintaining both service functionality and user privacy control.

Inventive Principle:
Principle #3Local quality

3Loss of information

If privacy-preserving credential systems like U-Prove and Idemix are used to protect user identity and behavior, then user privacy is improved, but integration complexity increases as effective integration into the identity ecosystem remains challenging

Engineering Contradiction:
Improveuser privacy protectionVSAvoidsystem integration complexity
Core Design Contradiction:
Loss of informationVSDevice complexity

Solution Approach 1:

The patent designs a credential system that can function universally across different service providers and identity management contexts. The credential structure and verification process are designed to be protocol-agnostic and can be integrated into existing identity ecosystems without requiring complete system redesign, thereby reducing integration complexity while maintaining strong privacy protection.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentEP2936768B1A system and method of dynamic issuance of privacy preserving credentials
Publication Date: 2020.07.29 THALES DIS FRANCE SA
  • EP2936768B1 patent drawingFigure 1
  • EP2936768B1 patent drawingFigure 2
  • EP2936768B1 patent drawingFigure 3

AI summary

Method and System for enhanced privacy in privacy-preserving identity solutions. The technology provides for a redirect of a request to generate a proof of an attribute from a service provider to a separator. The separator removes source identification from the attribute-proof request and redirects the attribute-proof request, free of original source identification, to a credential issuer which issues the credential. A security device of the user generates a presentation token from the privacy-preserving credential and presents the presentation token to the service provider as proof of the attribute. Other systems and methods are disclosed.