Token Proximity Transactions Through Auxiliary Authentication Devices
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing transaction systems require physical user devices for authentication and token provisioning, which can be cumbersome and incompatible with legacy access devices, limiting transaction capabilities.
Innovation Solution
An auxiliary device communicates with an access device to receive authentication data, verify it, request and receive a token and transaction authentication verification value, and provide them to the access device to generate an authorization request message, facilitating transactions without the need for a physical user device.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If a physical user device is used for token provisioning and authentication, then transaction security is maintained, but transaction convenience and speed deteriorate due to multiple authentication steps and physical device requirements
Solution Approach 1:
The system performs preliminary authentication and token provisioning actions before the actual transaction occurs. The auxiliary device pre-establishes credentials and authentication tokens, so that during the transaction itself, the user simply needs to present the auxiliary device without going through multiple authentication steps at the point of sale.
Solution Approach 2:
An auxiliary device is introduced as an intermediary between the user device and the access device. This auxiliary device holds and presents authentication credentials and tokens, eliminating the need for the user to directly manage complex authentication processes or have physical access to the primary user device during transactions.
2Adaptability or versatility
If legacy access devices are used, then compatibility with existing infrastructure is maintained, but capability to conduct modern token-based transactions deteriorates
Solution Approach 1:
The auxiliary device creates a functional copy of the user device's authentication capabilities. It contains replicated credentials and tokens that allow it to interact with legacy access devices as if it were the original user device, enabling modern token-based transactions through older infrastructure without modifying the access devices themselves.
3Productivity
If multiple authentication steps and physical user devices are required, then security is maintained, but transaction time and user effort increase
Solution Approach 1:
The authentication and token management functions are extracted from the primary user device and placed into the auxiliary device. This separation allows the auxiliary device to handle authentication independently and present credentials directly to access devices, eliminating the need for users to return to their phones or computers to complete authentication during transactions.
Data Source
AI summary
Systems and methods are provided to enable a user to conduct a transaction using their credentials stored on a secure server computer (e.g., a computer associated with a partner such as another merchant) by merely presenting their authentication data at a physical location via an auxiliary device. An auxiliary device may be provided for interfacing with a partner's backend server (e.g., the secure server computer). In some embodiments, biometric authentication may provide a mechanism for a true seamless and potentially frictionless (in the case of modalities that do not require physical contact) interaction. Payment can occur without any need for a card, phone, wearable, or any other user device as long as the auxiliary device is able to recognize the user and retrieve a credential that can be linked to that user.


