Method and a system for managing user identities for use during communication between two web browsers

US11146536B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11146536-B2
Application numberUS-201515525573-A
CountryUS
Kind codeB2
Filing dateNov 6, 2015
Priority dateNov 10, 2014
Publication dateOct 12, 2021
Grant dateOct 12, 2021

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A management method for managing an identity of a first user during communication between a first web browser installed on a communication terminal of the first user and a second web browser installed on a communication terminal of a second user is disclosed. The method includes the first user obtaining at least one first data item characteristic of the second user. The method also includes associating an identity of the first user with the at least one first data item characteristic of the second user. The method also includes making the identity of the first user associated with the at least one first characteristic data item available to the second user on condition that the second user holds at least one second data item corresponding to the first data item characteristic of the second user.

First claim

Opening claim text (preview).

The invention claimed is: 1. A management method for managing an identity of a first user, the method for use during communication between a first web browser installed on a communication terminal of the first user and a second web browser installed on a communication terminal of a second user, the management method comprising: obtaining by the first user at least one first data item characteristic of the second user, the at least one first data item characteristic of the second user being a public key of a public and secret key pair allocated to the second user, the public key being obtained by the first browser from the second browser; associating an identity of the first user with the at least one first data item characteristic of the second user, the associating comprising registering, in at least one of the first web browser or a trusted entity for identifying the first user, the identity of the first user in association with the at least one first data item characteristic of the second user; and making the identity of the first user registered in the at least one of the first web browser or the trusted entity for identifying the first user in association with the at least one first data item available to the second user on condition that the second user holds at least one second data item of the second user corresponding to the first data item characteristic of the second user, the associating and making-available performed by a trusted entity for authenticating the first user, the making available comprising the trusted entity sending the identity of the first user to the second browser. 2. A management method according to claim 1 , further comprising associating the identity of the first user with an identifier of the communication. 3. A management method according to claim 1 , wherein the identity of the first user that is made available to the second user depends on the second user. 4. A management method according to claim 1 , wherein the at least one first data item characteristic of the second user is a public key of a public and secret key pair allocated to the second user. 5. A management method according to claim 1 , wherein the making-available comprises the trusted entity sending the identity of the first user to the second browser after the trusted entity has received proof of authentication of the first user signed by the second browser using the private key of the key pair allocated to the second user. 6. A management method according to claim 1 , wherein the obtaining, associating, and making-available are performed by the first browser. 7. A management method according to claim 6 , wherein: the at least one first data item characteristic of the second user is a public key of a public and secret key pair allocated to the second user, the public key being obtained by the first browser from a trusted entity that has authenticated the second user; the associating comprises the first browser encrypting the identity of the first user while using the public key of the second user; and the making-available comprises the first browser sending the encrypted identity to the second browser. 8. A method performed by a first web browser installed on a communication terminal of a first user, the method comprising: obtaining at least one first data item characteristic of a second user from a second web browser installed on a communication terminal of the second user, the at least one first data item characteristic of the second user being a public key of a public and secret key pair allocated to the second user; and communicating with a trusted entity for identifying the first user to associate, in the trusted entity, an identity of the first user with the at least one data item characteristic of the second user, the associating comprising registering in the trusted entity the identity of the first user in association with the at least one first data item characteristic of the second user to allow the trusted entity to send the identity of the first user to the second browser upon confirmation that the second user holds at least one second data item of the second user corresponding to the first data item characteristic of the second user. 9. A method according to claim 8 , wherein the identity of the first user associated in the trusted entity with the at least one first data item characteristic of the second user is distinct from an identity of the first user used during authentication of the first user by the trusted entity. 10. A method performed by a trusted entity during communication between a first web browser installed on a communication terminal of a first user and a second web browser installed on a communication terminal of a second user, the trusted entity for identifying the first user, the method comprising: associating an identity of the first user with at least one first data item characteristic of the second user, the at least one first data item characteristic of the second user being a public key of a public and secret key pair allocated to the second user, the public key being obtained by the first browser from the second browser, the associating comprising registering the identity of the first user in association with the at least one first data item characteristic of the second user; and after the trusted entity has received proof that the second user holds at least one second data item of the second user corresponding to the first data item characteristic of the second user, making available to the second user the identity of the first user registered in association with the at least one first data item characteristic of the second user, the making available comprising the trusted entity sending the identity of the first user to the second browser. 11. A method for use during communication between a first web browser installed on a communication terminal of a first user and a second web browser installed on a communication terminal of a second user, the method performed by the second browser and comprising: providing the first browser with at least one first data item characteristic of the second user, the at least one first data item characteristic of the second user being a public key of a public and secret key pair allocated to the second user; providing a trusted entity for authenticating the first user with proof that the second user holds at least one second data item of the second user corresponding to the first data item characteristic of the second user; and receiving an identity of the first user sent from the trusted entity to the second web browser, the identity of the first user being registered in the trusted entity with the first data item characteristic of the second user, the trusted entity for identifying the first user. 12. A system for managing an identity of a first user, during communication between a first web browser installed on a communication terminal of the first user and a second web browser installed on a communication terminal of a second user, the system configured to: obtain, in the communication terminal of the first user, at least one first data item characteristic of the second user, the at least one first data item characteristic of the second user being a public key of a public and secret key pair allocated to the second user, the public key being obtained by the first browser from the second browser; associate an identity of the first user with the at least one first data item characteristic of the second user, the associating comprising registering, in at least one of the first web browser or a trusted entity for identifying the first user, the identity of the first user in association with the at least one fi

Assignees

Inventors

Classifications

  • Proxies, e.g. for session initiation protocol [SIP] · CPC title

  • providing single-sign-on or federations · CPC title

  • at the transport layer · CPC title

  • during transmission, i.e. party's identity is protected against eavesdropping, e.g. by using temporary identifiers, but is known to the other party or parties involved in the communication · CPC title

  • based on web technology, e.g. hypertext transfer protocol [HTTP] · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11146536B2 cover?
A management method for managing an identity of a first user during communication between a first web browser installed on a communication terminal of the first user and a second web browser installed on a communication terminal of a second user is disclosed. The method includes the first user obtaining at least one first data item characteristic of the second user. The method also includes ass…
Who is the assignee on this patent?
Orange
What technology area does this patent fall under?
Primary CPC classification H04L63/0414. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Oct 12 2021 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).