Server Unique Identifier Authentication via Cryptographic Signatures

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing digital communication networks face challenges in providing secure and convenient access to sensitive information, such as healthcare data, while protecting the identity of users and ensuring accurate data retrieval.

Innovation Solution

A server system that associates unique identifiers with data sets, allowing clients to access these data sets via a digital communication network. The system validates authentication information from registered users, providing access rights specific to authorized users, thus ensuring secure and convenient data access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If traditional authentication methods (username/password) are used for accessing sensitive data via internet, then user convenience is improved, but security is worsened due to identity exposure and password vulnerabilities

Engineering Contradiction:
Improveuser convenienceVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent extracts the authentication mechanism from traditional username/password systems and implements a cryptographic signature-based system. The server validates cryptographic signatures instead of personal credentials, removing the exposure of user identities while maintaining authentication functionality. This resolves the contradiction by taking out the vulnerable authentication method while preserving convenience.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces cryptographic signatures as an intermediary between the user and the server. Instead of directly exposing user identities or passwords, the system uses cryptographic proofs that verify authentication without revealing personal information. This intermediary mechanism maintains security while preserving user convenience.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If personal data is exchanged during authentication, then user identification is improved, but user privacy is worsened due to identity exposure

Engineering Contradiction:
Improveuser identification accuracyVSAvoiduser privacy
Core Design Contradiction:
Measurement precisionVSLoss of information

Solution Approach 1:

The patent extracts personal data from the authentication process entirely. Instead of exchanging usernames, emails, or other personal identifiers, the system uses cryptographic signatures that prove authentication without revealing any personal information. This resolves the contradiction by removing personal data exchange while maintaining accurate user identification through cryptographic verification.

Inventive Principle:
Principle #2Taking out (Extraction)

3Reliability

If access control is implemented for sensitive data, then data security is improved, but system complexity is worsened

Engineering Contradiction:
Improvedata securityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent changes the authentication parameter from personal credentials to cryptographic signatures. This parameter change simplifies the access control system by replacing complex permission management based on user identities with a simpler cryptographic verification process. The server only needs to validate signatures against stored public keys, reducing system complexity while maintaining strong security.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS12339983B2Providing and obtaining one or more data sets via a digital communication network
Publication Date: 2025.06.24 NOSCENDO GMBH
  • US12339983B2 patent drawing
  • US12339983B2 patent drawing
  • US12339983B2 patent drawing

AI summary

A server for providing one or more data sets via a digital communication network is configured for: associating an unique identifier with an identified data set, the unique identifier representing a network address for accessing the identified data set via the digital communication network, wherein the unique identifier is specific to the identified data set; validating an authentication information provided by an authenticator of a client requesting access to the server via the unique identifier; and selectively providing the client with an access right for one or more data sets, if the authentication information identifies the authenticator as being associated with a registered user.