Software Credential Token Biometric Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The transition from hardware credential tokens to software credential tokens for online resource access is inconvenient for users, and there is a challenge in ensuring that the software credential token provides comparable credential strength to the hardware token, while maintaining high assurance and user familiarity.
Innovation Solution
A system that issues software credential tokens based on hardware credential tokens, using a biometric identifier and a one-time password encrypted with the hardware token's public key, ensuring only the rightful owner can access the online resource, thus maintaining high assurance and convenience.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If hardware credential tokens are used for access, then authentication strength is improved, but user convenience deteriorates due to physical possession requirements and need for external accessories
Solution Approach 1:
The patent creates a software-based copy of the hardware credential token's authentication functionality. The software credential token replicates the security mechanisms of hardware tokens in software form, allowing users to access resources without physical hardware while maintaining equivalent authentication strength through cryptographic protocols and secure software implementation.
Solution Approach 2:
The patent replaces the mechanical/physical hardware token system with a software-based authentication system. Instead of requiring physical possession of a hardware device and external accessories, the system uses software credential tokens that can be stored and executed directly on mobile devices, substituting physical mechanisms with software-based cryptographic verification.
2Ease of operation
If software credential tokens are issued, then user convenience is improved, but credential strength may deteriorate compared to hardware tokens
Solution Approach 1:
The patent changes the fundamental parameters of credential storage and verification from hardware-based physical constraints to software-based cryptographic parameters. The software credential token uses strong cryptographic algorithms, secure key management, and verified authentication protocols to achieve credential strength comparable to hardware tokens, while the parameter of physical possession is replaced by secure software execution environment.
3Reliability
If biometric authentication is added, then authentication strength is improved, but device complexity increases
Solution Approach 1:
The patent leverages the universal biometric authentication capability already present in modern mobile devices. By utilizing the device's existing biometric sensor and authentication framework, the system adds strong authentication without requiring separate dedicated hardware or complex external systems. The biometric feature serves multiple purposes including identity verification, session management, and credential protection.
Data Source
AI summary
Embodiments for a computer readable medium including a software module are provided. The software module causes one or more processing devices to obtain a biometric identifier from a user. Access to a resource is requested by providing a software credential token and the biometric identifier. The software credential token corresponds to a hardware credential token, and the hardware credential token is one of a set of hardware credential tokens that are used to access the resource. An indication that access to the resource has been granted is received and after receiving the indication an indication that the access to the resource has been revoked is received. After receiving the indication that access to the resource has been revoked, a biometric identifier is re-obtained from a user and access to the resource is re-requested by providing a software credential token and the re-obtained biometric identifier.


