Proxy Identifier Allocation for Wireless Device Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current security measures for personal information, particularly in financial transactions, lack effective methods for detecting and managing electronic devices within wireless networks to securely allocate and utilize proxy identifiers, leading to potential vulnerabilities in data protection.

Innovation Solution

A system comprising a processor and memory module that detects electronic devices within a wireless network, matches them with user entries, allocates proxy identifiers, and initiates storage on the devices, allowing secure digital lockbox storage and validation of these identifiers for transaction use.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If credentials are stored on electronic devices for transaction authentication, then transaction security is improved, but the risk of data exposure and device compromise increases

Engineering Contradiction:
Improvetransaction securityVSAvoiddata exposure risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent extracts sensitive credential data from electronic devices and stores it in a secure server environment. The system detects electronic devices, retrieves their credentials, and moves them to a centralized secure storage location, thereby removing the harm of storing sensitive data on potentially compromised devices while maintaining authentication capability.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces a proxy identifier as an intermediary between the electronic device and the actual credentials. Instead of devices directly using sensitive credential data, they use harmless proxy identifiers that reference the real credentials stored securely on the server, eliminating the need for devices to store sensitive information locally.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If proxy identifiers are allocated and stored on electronic devices, then security against data exposure is improved, but system complexity increases

Engineering Contradiction:
Improvedata exposure riskVSAvoidsystem complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent creates proxy identifiers as simplified copies or references to the actual credentials. These proxy identifiers contain enough information to authenticate transactions without replicating the full complexity and sensitivity of the original credential data, reducing the burden on devices while maintaining security.

Inventive Principle:
Principle #26Copying

3Reliability

If credentials are moved from electronic devices to a secure server, then data security is improved, but device functionality and autonomy are reduced

Engineering Contradiction:
Improvedata securityVSAvoiddevice autonomy
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent uses proxy identifiers as intermediaries that allow devices to maintain operational autonomy. Devices can still initiate transactions using their proxy identifiers without needing direct access to sensitive credentials, preserving ease of operation while improving data security through centralized storage.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10142340B2System for detection and identification of electronic devices and allocation of proxy identifiers for same
Publication Date: 2018.11.27 BANK OF AMERICA CORP
  • US10142340B2 patent drawing
  • US10142340B2 patent drawing
  • US10142340B2 patent drawing

AI summary

Embodiments are directed to detection and identification of electronic devices and allocation of proxy identifiers for the same. Embodiments detect one or more electronic devices within a wireless network range; identify the one or more electronic devices within the wireless network range, comprising matching the one or more electronic devices with one or more entries in a database of users; determine that the one or more electronic devices has stored thereon one or more credentials; access the one or more credentials; allocate proxy identifiers corresponding to the one or more credentials; and initiate storage of the allocated proxy identifiers on the one or more electronic devices.