Secondary device authentication proxied from authenticated primary device

US11910194B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11910194-B2
Application numberUS-202218086606-A
CountryUS
Kind codeB2
Filing dateDec 21, 2022
Priority dateMar 25, 2019
Publication dateFeb 20, 2024
Grant dateFeb 20, 2024

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method of authenticating a secondary communication device based on authentication of a primary mobile communication device is disclosed. Trust is established with the primary mobile communication device by a device authentication server (DAS). The DAS receives an authorization code request from a secondary application operating on the secondary communication device, and transmits an authorization code to the secondary communication device. The DAS receives the authorization code from a primary application operating on the primary mobile communication device. The DAS authorizes the secondary application based on the trust with the primary mobile communication device and the authorization code from the primary application. The DAS transmits a secondary token to the secondary application at the secondary communication device to allow initialization of a communication session from the secondary application on behalf of the primary mobile communication device.

First claim

Opening claim text (preview).

What is claimed is: 1. A primary mobile communication device, comprising: a processor; a camera; a transceiver; a non-transitory memory, wherein the non-transitory memory stores a primary token indicating trust established between the primary mobile communication device and a device authentication server (DAS); and a primary application stored in the non-transitory memory that, when executed by the processor: activates the camera to scan a Quick Response (QR) code from a secondary application at a secondary communication device; and transmits, via the transceiver, the QR code and the primary token to the DAS to indicate a physical nexus between the primary mobile communication device and the secondary communication device and to request extending the trust to include the secondary application at the secondary communication device on behalf of the primary mobile communication device. 2. The primary mobile communication device of claim 1 , wherein the primary application, when executed by the processor, further: receives a secondary device name for the secondary communication device as input after scanning the QR code; and transmits the secondary device name to the DAS along with the QR code and the primary token. 3. The primary mobile communication device of claim 2 , further comprising a display, wherein the primary application, when executed by the processor, further: receives, via the transceiver, an application association list for the primary application from the DAS, the application association list indicating the secondary communication device is associated with the primary mobile communication device; and displays, via the display, an indication that the secondary communication device is associated with the primary mobile communication device. 4. The primary mobile communication device of claim 3 , wherein the application association list is created by the DAS in response to authenticating the primary token. 5. The primary mobile communication device of claim 1 , wherein the primary token stored in non-transitory memory includes a mobile directory number (MDN) of the primary mobile communication device, a device serial number of the primary mobile communication device, a timestamp, a primary flag set to true, and a label. 6. The primary mobile communication device of claim 1 , wherein trust is established with the DAS by mobile access gateway (MAG) authentication, International Mobile Subscriber Identity (IMSI) encryption challenge, or self-identified IMSI. 7. The primary mobile communication device of claim 1 , wherein the primary token provides the primary application access to a particular user's account associated with the primary mobile communication device. 8. The primary mobile communication device of claim 1 , wherein the primary token comprises a specified time to live. 9. The primary mobile communication device of claim 8 , wherein trust is reestablished between the primary mobile communication device and the DAS in response to the specified time to live expiring. 10. The primary mobile communication device of claim 1 , wherein once trust is extended, the secondary application of the secondary communication device initiates a communication session with a network on behalf of the primary mobile communication device based on a secondary token. 11. A method, comprising: storing, in a non-transitory memory of a primary mobile communication device, a primary token indicating trust established between the primary mobile communication device and a device authentication server (DAS); activating, by a primary application stored in the non-transitory memory and executed by a processor of the primary mobile communication device, a camera of the primary mobile communication device to scan a Quick Response (QR) code from a secondary application at a secondary communication device; and transmitting, by the primary application via a transceiver of the primary mobile communication device, the QR code and the primary token to the DAS to indicate a physical nexus between the primary mobile communication device and the secondary communication device and to request extending the trust to include the secondary application at the secondary communication device on behalf of the primary mobile communication device. 12. The method of claim 11 , further comprising: receiving, by the primary application, a secondary device name for the secondary communication device as input after scanning the QR code; and transmitting, by the primary application, the secondary device name to the DAS along with the QR code and the primary token. 13. The method of claim 12 , further comprising: receiving, by the primary application via the transceiver, an application association list for the primary application from the DAS, the application association list indicating the secondary communication device is associated with the primary mobile communication device; and displaying, by the primary application via a display of the primary mobile communication device, an indication that the secondary communication device is associated with the primary mobile communication device. 14. The method of claim 13 , wherein the application association list is created by the DAS in response to authenticating the primary token. 15. The method of claim 11 , wherein the primary token stored in non-transitory memory includes a mobile directory number (MDN) of the primary mobile communication device, a device serial number of the primary mobile communication device, a timestamp, a primary flag set to true, and a label. 16. The method of claim 11 , wherein trust is established with the DAS by mobile access gateway (MAG) authentication, International Mobile Subscriber Identity (IMSI) encryption challenge, or self-identified IMSI. 17. The method of claim 11 , wherein the primary token provides the primary application access to a particular user's account associated with the primary mobile communication device. 18. The method of claim 11 , wherein the primary token comprises a specified time to live. 19. The method of claim 18 , wherein trust is reestablished between the primary mobile communication device and the DAS in response to the specified time to live expiring. 20. The method of claim 11 , wherein once trust is extended, the secondary application of the secondary communication device initiates a communication session with a network on behalf of the primary mobile communication device based on a secondary token.

Assignees

Inventors

Classifications

  • H04W12/084Primary

    using delegated authorisation, e.g. open authorisation [OAuth] protocol · CPC title

  • by delegation of authentication, e.g. a proxy authenticates an entity to be authenticated on behalf of this entity vis-à-vis an authentication entity · CPC title

  • Authentication · CPC title

  • using tickets, e.g. Kerberos (cryptographic mechanisms or cryptographic arrangements for entity authentication using tickets or tokens H04L9/3213) · CPC title

  • Protecting confidentiality, e.g. by encryption · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11910194B2 cover?
A method of authenticating a secondary communication device based on authentication of a primary mobile communication device is disclosed. Trust is established with the primary mobile communication device by a device authentication server (DAS). The DAS receives an authorization code request from a secondary application operating on the secondary communication device, and transmits an authoriza…
Who is the assignee on this patent?
T Mobile Innovations Llc
What technology area does this patent fall under?
Primary CPC classification H04W12/084. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Feb 20 2024 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 12 related publications on this page (citations in our corpus or others sharing the same primary CPC).