Remote Authentication Device Feedback Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current remote online authentication processes lack reliability and security, particularly in ensuring that the authentication response comes from the associated user and is relevant to the request.

Innovation Solution

A method involving an authentication device connected to an interrogating entity, where an I/O request is sent, output, and responded to, with verification ensuring the response is from the associated user and relevant to the request.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional remote online authentication processes are used, then the authentication can be performed remotely, but the reliability and security cannot be ensured that the response comes from the associated user and is relevant to the request

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a feedback mechanism where the authentication device receives an I/O response and verifies whether it was generated after the I/O request was output and whether it relates to the request. This closed-loop feedback ensures that only authentic user responses are accepted, directly improving authentication reliability without requiring complex additional hardware

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The authentication device serves as an intermediary between the user and the interrogating entity. It mediates the authentication process by capturing the user's response to the I/O request and verifying its authenticity before transmitting it back to the interrogating entity, thereby enhancing security while maintaining process simplicity

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If verification steps are added to ensure response authenticity and relevance, then security is improved, but the authentication process becomes more complex

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication operation simplicity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The authentication device performs self-verification by automatically checking whether the received I/O response was generated after the I/O request was output and whether it relates to the request. This self-service verification mechanism enhances security without requiring additional manual intervention from users, thereby maintaining operational simplicity

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The verification process focuses on the essential elements needed for security: checking the timing relationship between request and response, and verifying the relevance of the response to the request. By performing only these critical verification steps rather than exhaustive checks, the system achieves adequate security while keeping the operation simple

Inventive Principle:
Principle #16Partial or excessive action

Data Source

PatentUS20250080515A1Method and a Computer Program Product for Performing a Remote Online Authentication Process
Publication Date: 2025.03.06 UBIQU
  • US20250080515A1 patent drawing

AI summary

A method for performing a remote online authentication process. The method includes providing an authentication device communicately connected to an interrogating entity, and sending, by the interrogating entity, an I/O request to the authentication device. The method also includes outputting the I/O request on the authentication device, via an I/O interface of the authentication device, and receiving, on the authentication device, an I/O response, via the I/O interface of the authentication device. Further, the method includes verifying whether the received I/O response has been received from a user associated with the authentication device after the I/O request has been output on the authentication device and whether the received I/O response relates to the I/O request.