Proxy Login Module for Enterprise Account Management

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional authentication systems for managing enterprise data require multiple accounts and authentication information for authorized personnel and specialists, leading to increased complexity and resource management burdens, particularly in joint management scenarios like financial accounting and tax practices.

Innovation Solution

An authentication device and computer-readable medium that implement a first login module for authenticating a primary account and a second login module for approving access to a dependent account with a pre-established proxy, allowing specialist users to access enterprise user accounts without needing separate authentication for the dependent account.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If separate accounts are issued for authorized persons and specialists, then data access control is improved, but account management complexity increases

Engineering Contradiction:
Improvedata access controlVSAvoidaccount management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system segments authentication into two distinct modules: a first login module for authorized persons and a second login module for specialists. This segmentation allows each module to handle specific authentication scenarios independently, maintaining security while simplifying the overall management structure.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a proxy authentication mechanism as an intermediary. The second login module acts as a mediator that validates specialist access requests by referencing pre-established proxy relationships with authorized persons, eliminating the need for specialists to have independent authentication credentials.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If multiple accounts with separate authentication are required, then access security is improved, but resource management burden increases

Engineering Contradiction:
Improveaccess securityVSAvoidnumber of accounts and authentication information
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The authentication device is designed with multi-functionality, where the first login module and second login module work together in a unified system. The second login module leverages the authentication framework established by the first login module, allowing specialists to access data without requiring separate account management while maintaining security through proxy validation.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system performs preliminary authentication through the first login module for authorized persons. This preliminary action establishes a trusted session that can then be referenced by the second login module when specialists need access, eliminating the need for specialists to undergo separate full authentication processes.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If specialists require independent account access, then individual accountability is improved, but ease of operation deteriorates

Engineering Contradiction:
Improveindividual accountabilityVSAvoidease of data access
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system segments the authentication process into two paths: one for authorized persons who need full accountability, and another for specialists who need convenient access. The first login module handles authorized persons with complete authentication, while the second login module provides streamlined access for specialists through proxy validation, optimizing both accountability and ease of operation for different user types.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS10701051B2Authentication device and computer-readable recording medium
Publication Date: 2020.06.30 CASIO COMPUTER CO LTD
  • US10701051B2 patent drawing
  • US10701051B2 patent drawing
  • US10701051B2 patent drawing

AI summary

An authentication device includes a first login module and a second login module. Upon a login request to a first account among predetermined accounts which is accompanied by an entry of authentication information from a user, the first login module compares the entered authentication information with the authentication information associated with each of the predetermined accounts and approves the login request if the entered authentication information matches the authentication information on the first account. The second login module approves login of a second account if login to the second account is requested in a login session started by approval of the login request to the first account by the first login module. The second account has a pre-established proxy to approve the login request to the first account.