Single-input multifactor authentication via biometric trigger
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current multifactor authentication methods are cumbersome for users, requiring them to type a password and then enter a second-factor authentication token, which can be inconvenient and prone to errors.
Innovation Solution
A system that uses a single biometric input, such as a fingerprint, to generate and send both user credentials and a second-factor authentication token, stored securely within a computing device's secure element, allowing for streamlined multifactor authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional multifactor authentication is used requiring password and token entry, then security is improved, but ease of operation deteriorates
Solution Approach 1:
The patent combines multiple authentication factors (biometric data, password credential, and authentication token) into a single authentication action. The biometric authentication module triggers retrieval of stored password and token, then submits all three factors simultaneously to the authentication server through one API call, eliminating the need for separate manual entries while maintaining security.
Solution Approach 2:
The system performs preliminary actions by storing password credentials and authentication tokens in secure storage during initial setup, and by pre-registering biometric data. When authentication is needed, these pre-stored elements are automatically retrieved and submitted without requiring the user to manually input them at the moment of authentication.
2Reliability
If manual token entry is required, then authentication security is improved, but productivity deteriorates
Solution Approach 1:
The patent merges the submission of multiple authentication factors into a single automated API call. The authentication module retrieves stored password and token, combines them with biometric verification results, and submits all factors simultaneously to the authentication server, eliminating multiple manual interaction steps and significantly improving login speed.
Solution Approach 2:
The system performs self-service by automatically retrieving stored credentials and tokens from secure storage, and by autonomously submitting the complete authentication package to the server without requiring user intervention for each factor. The biometric module triggers the entire authentication sequence automatically.
3Reliability
If multiple authentication factors are submitted separately, then authentication reliability is improved, but device complexity increases
Solution Approach 1:
The patent merges the handling of multiple authentication factors into a unified authentication module. This single module manages biometric verification, retrieves stored password and token from secure storage, and submits all factors through one standardized API interface to the authentication server, simplifying the overall system architecture while maintaining multi-factor authentication reliability.
Solution Approach 2:
The authentication module is designed as a universal multi-functional component that handles biometric verification, credential retrieval, token generation, and authentication submission all through a single interface. This multi-functionality reduces the need for separate dedicated components for each authentication factor, thereby reducing device complexity.
Data Source
AI summary
Multifactor authentication is a method to secure data and accounts and to prevent unauthorized access. A first factor can be information that the user knows, such as a username and password combination. A second factor can be something that the user possesses, such as a token generator or a trusted device. The present invention enables a user to present multiple authentication factors through a single biometric input using stored credentials and tokens generated by a secure element.


