Secondary device authentication proxied from authenticated primary device

US11070980B1 · US · B1

Patent metadata
FieldValue
Publication numberUS-11070980-B1
Application numberUS-201916363581-A
CountryUS
Kind codeB1
Filing dateMar 25, 2019
Priority dateMar 25, 2019
Publication dateJul 20, 2021
Grant dateJul 20, 2021

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method of authenticating a secondary communication device based on authentication of a primary mobile communication device is disclosed. Trust is established with the primary mobile communication device by a device authentication server (DAS). The DAS receives an authorization code request from a secondary application operating on the secondary communication device, and transmits an authorization code to the secondary communication device. The DAS receives the authorization code from a primary application operating on the primary mobile communication device. The DAS authorizes the secondary application based on the trust with the primary mobile communication device and the authorization code from the primary application. The DAS transmits a secondary token to the secondary application at the secondary communication device to allow initialization of a communication session from the secondary application on behalf of the primary mobile communication device.

First claim

Opening claim text (preview).

What is claimed is: 1. A method of authenticating a secondary communication device based on authentication of a primary mobile communication device, the method comprising: establishing trust with the primary mobile communication device by a device authentication server (DAS); receiving, by the DAS, an authorization code request from a secondary application operating on the secondary communication device; transmitting, by the DAS, an authorization code to the secondary communication device in response to the authorization code request; receiving, by the DAS, the authorization code from a primary application operating on the primary mobile communication device; authorizing, by the DAS, the secondary application based on the trust with the primary mobile communication device and the authorization code from the primary application; and transmitting, by the DAS, a secondary token to the secondary application at the secondary communication device to allow initialization of a communication session from the secondary application. 2. The method of claim 1 , wherein the authorization code is a Quick Response (QR) code. 3. The method of claim 1 , wherein the authorization code request includes an identification token from the secondary application, and further comprising: associating, in memory, the authorization code with the identification token from the secondary application. 4. The method of claim 3 , further comprising: receiving, by the DAS, a secondary device name and primary token from the primary application on the primary mobile communication device along with the authorization code, the primary token evidencing the established trust with the primary mobile communication device, and the secondary device name indicating the secondary communication device; associating, in memory, the secondary device name, the authorization code, and the identification token with the primary application in an association list; and transmitting, by the DAS, the association list to the primary application at the primary mobile communication device. 5. The method of claim 4 , further comprising: generating, by the DAS, a temporary access code for the secondary application; storing, in memory, the temporary access code in the association list; transmitting, by the DAS, the temporary access code to the secondary application on the secondary communication device; and receiving, by the DAS, an authentication request from the secondary application on the secondary communication device, the authentication request including the temporary access code and the authorization code, wherein the authentication request is employed to authorize the secondary application based on the trust with the primary mobile communication device. 6. The method of claim 4 , wherein the primary token from the primary application on the primary mobile communication device includes a mobile directory number (MDN) of the primary mobile communication device, a device serial number of the primary mobile communication device, a timestamp, a primary flag set to true, and a label. 7. The method of claim 3 , wherein the secondary token transmitted to the secondary application includes a mobile directory number (MDN) of the primary mobile communication device, a device serial number of the primary mobile communication device, a timestamp, a primary flag set to false, a Quick Response (QR) code value, and a label. 8. The method of claim 1 , wherein trust is established with the primary mobile communication device by mobile access gateway (MAG) authentication, International Mobile Subscriber Identity (IMSI) encryption challenge, or self-identified IMSI.

Assignees

Inventors

Classifications

  • Security arrangements using identity modules · CPC title

  • H04W12/084Primary

    using delegated authorisation, e.g. open authorisation [OAuth] protocol · CPC title

  • Protecting confidentiality, e.g. by encryption · CPC title

  • using tickets, e.g. Kerberos (cryptographic mechanisms or cryptographic arrangements for entity authentication using tickets or tokens H04L9/3213) · CPC title

  • Authentication · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11070980B1 cover?
A method of authenticating a secondary communication device based on authentication of a primary mobile communication device is disclosed. Trust is established with the primary mobile communication device by a device authentication server (DAS). The DAS receives an authorization code request from a secondary application operating on the secondary communication device, and transmits an authoriza…
Who is the assignee on this patent?
Sprint Communications Co Lp
What technology area does this patent fall under?
Primary CPC classification H04W12/084. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Jul 20 2021 00:00:00 GMT+0000 (Coordinated Universal Time) (B1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 9 related publications on this page (citations in our corpus or others sharing the same primary CPC).