Secure Internet Communications with Verified Identities and Local Keys
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The current Internet infrastructure lacks reliable identity confirmation and secure communication mechanisms, allowing malicious actors to easily masquerade as trusted entities, compromising digital security and integrity.
Innovation Solution
A communications server system that registers and confirms user identities, generates public-private key pairs on user devices, and stores public keys on a cloud-based server, ensuring secure communication through encryption and signature verification without storing private keys centrally, backed by an immutable cryptographic chain.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If the Internet allows anonymous communication and identity hiding, then ease of operation and freedom of expression are improved, but security and reliability deteriorate due to ability to masquerade as trusted entities
Solution Approach 1:
The patent introduces a communications server as an intermediary that mediates between users, verifying identities through public key infrastructure and cryptographic certificates. The server acts as a trusted third party that confirms user identities without requiring direct trust between all communicating parties, thus maintaining ease of communication while improving reliability through systematic identity verification.
2Ease of operation
If private keys are stored on centralized servers, then ease of operation and key management are improved, but security deteriorates due to risk of centralized breaches and loss of user control
Solution Approach 1:
The patent extracts private keys from centralized server storage and places them on individual user devices. Each user generates and stores their own private key locally, eliminating the security risks associated with centralized key storage while maintaining ease of operation through automatic key generation and management by the communications server. This extraction of sensitive data from the central system directly addresses the security concern while preserving usability.
Solution Approach 2:
The system enables users to self-manage their private keys by generating and storing them on their own devices. The communications server provides automated public key distribution and cryptographic operations, but the private keys remain under user control. This self-service approach eliminates the need for centralized key management while maintaining operational ease through automated public key infrastructure.
3Reliability
If identity verification is performed with high accuracy, then security and reliability are improved, but device complexity and verification process complexity increase
Solution Approach 1:
The patent replaces complex manual identity verification processes with automated cryptographic mechanisms. Public key infrastructure, digital certificates, and cryptographic algorithms automatically verify identities without requiring complex manual procedures. The communications server handles the cryptographic operations transparently, providing high accuracy identity verification while keeping the user interface simple and the verification process unintimidating.
Data Source
AI summary
This invention is directed toward a method for facilitating secure communications on the Internet that allows individual actors to be registered, their identities to be confirmed at an acceptable level of confidence, and their association with, and/or ownership of, certain user identifiers (such as email addresses, phone numbers, domain names, application usernames, and the like), to be verified. The invention also enables Internet actors to communicate securely and to encrypt or sign digital messages and/or documents between each other while maintaining sole possession and control of their private cryptographic keys. To ensure that the integrity of user information has not been compromised, the invention includes embodiments that periodically backup crucial data in a publicly accessible blockchain format that can be independently verified and is difficult to alter.


