Anonymous and ephemeral tokens to authenticate elevator calls

US10319160B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10319160-B2
Application numberUS-201715435395-A
CountryUS
Kind codeB2
Filing dateFeb 17, 2017
Priority dateFeb 18, 2016
Publication dateJun 11, 2019
Grant dateJun 11, 2019

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

According to one or more embodiments, a system and method for authorizing a user securing an elevator call in a building is provided. For example, the method includes receiving, at a mobile device, a secure authorization token that includes an expiration time, connecting the mobile device to a backend system using the secure authorization token from the mobile device, verifying, using the backend system, an authenticity of the secure authorization token from the mobile device based on at least the expiration time, generating, at the backend system, a secure access token and a random number in response to the authenticity of the secure authorization token being verified, and receiving, at the mobile device, the secure access token and the random number for use making elevator call requests.

First claim

Opening claim text (preview).

What is claimed is: 1. A method for authorizing a user securing an elevator call in a building, the method comprising: requesting, by a property manager, a secure authorization token that includes an expiration time from a backend system; transmitting, from the property manager, the secure authorization token to a mobile device; connecting a backend system to the mobile device using the secure authorization token; verifying, using the backend system, an authenticity of the secure authorization token from the mobile device based on at least the expiration time; generating, at the backend system, a secure access token and a random number in response to the authenticity of the secure authorization token being verified; and sending, to the mobile device, the secure access token and the random number for use in making elevator call requests. 2. The method of claim 1 , wherein: the backend system generates the secure authorization token; and the backend system transmits the secure authorization token to the property manager. 3. The method of claim 2 , wherein generating, using the backend system, the secure authorization token comprises: generating the secure authorization token using the expiration time and one or more of an expiration date, a current date, a current time, a building identification, a current user location, a user type, and user preferences. 4. The method of claim 1 , wherein verifying, using the backend system, the authenticity of the secure authorization token from the mobile device based on at least the expiration time further comprises; verifying the authenticity of the secure authorization token based on one or more of the expiration time and an expiration date, a current date, a current time, a building identification, a current user location, a user type, and user preferences. 5. The method of claim 1 , wherein generating, at the backend system, a secure access token in response to the authenticity of the secure authorization token being verified comprises: including one or more of a long-term expiration time, a long-term expiration date, a temporary identifier, and a building identification in the secure access token, wherein the temporary identifier is generated using the building identification and a sequence number; and securing the secure access token using a building specific secret key (K ID ) to encrypt the secure access token. 6. The method of claim 1 , further comprising: storing, in a memory device of the mobile device, the secure access token and the random number, wherein the random number is a first random number; generating, at the mobile device, an elevator service request message based on a user input; transmitting, from the mobile device, the secure access token to the backend system in response to receiving the user input; verifying, at the backend system, the secure access token; generating, at the backend system, a second random number in response to verifying the secure access token; transmitting, from the backend system, the second random number to the mobile device, wherein the mobile device stores the second random number; transmitting, from the mobile device, the first random number along with the elevator service request message to the backend system; storing, at the backend system, the elevator service request message received from the mobile device in response to the first random number being verified; and transmitting, from the backend system, the elevator service request message to an elevator controller to call an elevator car in response to the first random number and the secure access token being verified. 7. The method of claim 1 , further comprising: storing, in a memory device of the mobile device, the secure access token and the random number, wherein the random number is a first random number; generating, at the mobile device, an elevator service request message based on a user input; transmitting, from the mobile device, the elevator service request message to the backend system; storing, at the backend system, the elevator service request message received from the mobile device; generating, at the backend system, a second random number in response to receiving the elevator service request message; transmitting, from the backend system, the second random number to the mobile device, wherein the mobile device stores the second random number; transmitting, from the mobile device, the first random number along with the secure access token to the backend system; verifying, at the backend system, the first random number and the secure access token; and transmitting, from the backend system, the elevator service request message to an elevator controller to call an elevator car in response to the first random number and the secure access token being verified. 8. The method of claim 1 , wherein the backend system comprises one or more of a server, a server blade, a server rack, a server farm, a distributed server, and a multi-node distributed processing network of computers. 9. The method of claim 1 , wherein the mobile device is located within a proximate distance of the building that the user is securing an elevator call in, wherein the property manager is located off-site from the building, and wherein the backend system is located in a cloud environment connecting to the mobile device and property manager over one or more networks. 10. A system for authorizing a user securing an elevator call in a building, the system comprising: a backend system that generates a secure authorization token that includes an expiration time; a property manager that requests the secure authorization token from the backend system, and transmits the secure authorization token from the backend system to a mobile device; the backend system configured to connect with the mobile device; the backend system configured to verify an authenticity of the secure authorization token from the mobile device based on at least the expiration time, the backend system configured to generate a secure access token and a first random number in response to the authenticity of the secure authorization token being verified, the backend system configured to transmit the secure access token and the first random number to the mobile device for use in generating an elevator service request message; an elevator controller that receives the elevator service request message generated by the mobile device; and an elevator car that is controlled by the elevator controller based on the elevator service request message. 11. The system of claim 10 , wherein the secure authorization token comprises one or more of the expiration time, an expiration date, a current date, a current time, a building identification, a current user location, a user type, and user preferences. 12. The system of claim 10 , wherein the backend system verifies the authenticity of the secure authorization token based on one or more of the expiration time and an expiration date, a current date, a current time, a building identification, a current user location, a user type, and user preferences. 13. The system of claim 10 , wherein the backend system includes in the secure access token one or more of a long-term expiration time, a long-term expiration date, a temporary identifier, and a building identification in the secure access token, wherein the temporary identifier is generated using the building identification and a sequence number, and wherein the backend system secures the secure access token using a building specific secret key (K ID ) to encrypt the secure access token. 14. The system of claim 10 , wherein the s

Assignees

Inventors

Classifications

  • using geo-location information, e.g. location data, time, relative position or proximity to other entities · CPC title

  • for accessing specific resources, e.g. using Kerberos tickets · CPC title

  • Call registering systems · CPC title

  • using one-time-passwords · CPC title

  • when the policy decisions are valid for a limited amount of time · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10319160B2 cover?
According to one or more embodiments, a system and method for authorizing a user securing an elevator call in a building is provided. For example, the method includes receiving, at a mobile device, a secure authorization token that includes an expiration time, connecting the mobile device to a backend system using the secure authorization token from the mobile device, verifying, using the backe…
Who is the assignee on this patent?
Otis Elevator Co
What technology area does this patent fall under?
Primary CPC classification H04L63/0807. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Jun 11 2019 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 2 related publications on this page (citations in our corpus or others sharing the same primary CPC).