Remote Authentication Server for Secure Third-Party Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing two-factor authentication methods are cumbersome and insecure, particularly when users need to access remote third-party servers from new locations, as they often require SMS codes or multiple security questions, which can be impractical and vulnerable to interception.

Innovation Solution

A system and method that utilize a remote authentication server to manage two-factor authentication, allowing users to access remote third-party servers without directly communicating authentication factors to the server. This system includes an electronic device with a memory and processors configured to communicate with a remote authentication server, obtain a two-factor authentication, and access the remote third-party server based on this authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If SMS or text messaging is used for two-factor authentication, then users can receive authentication codes, but security is compromised due to protocol vulnerabilities and users may not have access to their mobile devices

Engineering Contradiction:
Improveauthentication accessibilityVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a remote authentication server as an intermediary between the electronic device and the third-party server. This server handles the two-factor authentication process centrally, allowing authentication codes to be delivered through secure channels rather than vulnerable SMS protocols. The intermediary resolves the contradiction by providing both accessibility (users can authenticate from any location) and security (controlled authentication flow through a trusted server).

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system creates a virtual representation of the authentication process through the remote authentication server, which manages authentication factors without requiring direct communication between the electronic device and third-party server. This copying approach allows the authentication logic to be replicated and managed centrally, improving both accessibility and security.

Inventive Principle:
Principle #26Copying

2Reliability

If multiple security questions are used for two-factor authentication, then authentication security is improved, but user frustration increases due to difficulty remembering answers across different services

Engineering Contradiction:
Improveauthentication securityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The remote authentication server provides a universal authentication mechanism that works across multiple third-party servers. Instead of requiring users to manage different security questions for each service, the server implements a single two-factor authentication system that can be applied universally. This resolves the contradiction by maintaining security through centralized authentication while improving convenience through consistency across services.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent segments the authentication process into distinct components: the electronic device provides initial credentials, the remote authentication server handles the second factor, and the third-party server validates the authentication. This segmentation allows the security questions or alternative factors to be managed centrally by the authentication server rather than distributed across multiple services, reducing user burden while maintaining security.

Inventive Principle:
Principle #1Segmentation

3Reliability

If hardware dongles or installed applications are used for two-factor authentication, then security is improved, but device complexity increases and scalability to multiple services is limited

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication management
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the authentication management functionality from individual electronic devices and relocates it to a remote authentication server. Instead of requiring hardware dongles or installed applications on each device, the authentication logic is taken out and centralized. This resolves the contradiction by maintaining security through dedicated authentication handling while reducing device complexity and improving scalability to multiple services.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The remote authentication server acts as an intermediary that eliminates the need for complex local authentication mechanisms. By handling authentication factors centrally, the system removes the requirement for hardware dongles or persistent applications on electronic devices, thereby reducing device complexity while maintaining security through the intermediary's controlled authentication process.

Inventive Principle:
Principle #24Intermediary (Mediator)

4Reliability

If two-factor authentication is implemented across all remote servers, then security is improved, but authentication time increases due to the additional verification step

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication duration
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The system performs preliminary authentication setup by establishing trust relationships between the remote authentication server and third-party servers in advance. When authentication is needed, the pre-configured relationships allow for rapid verification without requiring users to manually set up multiple authentication methods for each service. This resolves the contradiction by maintaining security through pre-established protocols while reducing authentication time through automation.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The remote authentication server implements self-service authentication mechanisms that automatically handle the verification process without requiring extensive user interaction. The server can autonomously manage authentication factors, communicate with third-party servers, and validate credentials, thereby maintaining security while minimizing the time users spend on authentication procedures.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS20250063041A1Device and method for accessing a remote third- party server
Publication Date: 2025.02.20 LENOVO (SINGAPORE) PTE LTD
  • US20250063041A1 patent drawing
  • US20250063041A1 patent drawing
  • US20250063041A1 patent drawing

AI summary

A system for accessing a remote third-party server is provided that includes an electronic device having a memory to store executable instructions and one or more processors. When implementing the executable instructions the one or more processors are configured to communicate with a remote authentication server, obtain a two-factor authentication that is communicated to the remote authentication server, and access a remote third-party server based on the two-factor authentication communicated to the remote authentication server.