Robotic Process Multi-Factor Authentication via Credential Assets

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Robotic processes face challenges in navigating multi-factor authentication due to the inability to obtain additional factors required for authentication, leading to errors or failures when attempting to access online platforms.

Innovation Solution

An authentication system that generates a credential asset with a unique name, fetches tokens, calls notifications, and polls for a code to facilitate robotic process authentication, enabling automatic multi-factor authentication by connecting login attempts, credential assets, and codes using tokens.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If multi-factor authentication is implemented for user verification, then security is improved, but robotic processes are unable to complete authentication due to inability to obtain additional factors

Engineering Contradiction:
ImprovesecurityVSAvoidrobotic process authentication capability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces an intermediary system (authentication engine or service) that acts as a mediator between robotic processes and the multi-factor authentication system. This intermediary automatically retrieves additional authentication factors (such as security codes or tokens) and provides them to the robotic process, enabling robots to complete multi-factor authentication without manual intervention while maintaining the security requirements of the authentication system.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If traditional multi-factor authentication is used, then security is enhanced, but authentication process complexity increases for robotic processes

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a self-service mechanism where the authentication system automatically handles the retrieval and provision of additional authentication factors. The robotic process simply requests authentication, and the system autonomously obtains the necessary codes or tokens from authentication services (such as SMS, email, or authentication apps) and completes the verification process without requiring the robot to manually interact with multiple authentication channels, thereby reducing process complexity while maintaining security.

Inventive Principle:
Principle #25Self-service

3Reliability

If multi-factor authentication requires additional factors, then security is improved, but authentication time increases causing errors or failures in robotic processes

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent implements preliminary action by pre-configuring and caching authentication factors (such as security codes, tokens, or biometric data) before they are needed during the robotic authentication process. The system proactively retrieves and stores authentication credentials in advance, so when a robotic process needs to authenticate, the additional factors are already available and can be immediately provided, significantly reducing authentication time and preventing timeouts or failures while maintaining the security benefits of multi-factor authentication.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11647015B2Factor authentication for robotic processes
Publication Date: 2023.05.09 UIPATH INC
  • US11647015B2 patent drawing
  • US11647015B2 patent drawing
  • US11647015B2 patent drawing

AI summary

Disclosed herein is a computing device that includes a memory and a processor. The memory store processor executable instructions for an authentication system. The processor is coupled to the memory. The processor executes the authentication system to cause the computing device to generate a credential asset, which includes a unique name. The authentication system, also, fetches tokens for the credential asset using the unique name, calls a notification for each of the tokens, polls for a code of the credential asset, and utilizes the code for an authentication to run a job.