Data security classification sampling and labeling
US-11704431-B2 · Jul 18, 2023 · US
US12154402B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-12154402-B2 |
| Application number | US-202217992551-A |
| Country | US |
| Kind code | B2 |
| Filing date | Nov 22, 2022 |
| Priority date | Nov 22, 2022 |
| Publication date | Nov 26, 2024 |
| Grant date | Nov 26, 2024 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A method of access control includes receiving an access request transaction from one of a first identity sensor. Current confidence information is determined for the access request transaction. Prior confidence information is determined for at least one prior access request transaction associated with the user from at least one second identity sensor. A total confidence score value is generated based on a confidence function applied to the current confidence information and the prior confidence information. The total confidence score value is compared with a confidence threshold value for the secure resource associated with the access request transaction. Access to the secure resource is granted, in response to determining that the total confidence score value meets the confidence threshold value. The access to the secure resource is denied, in response to determining that the total confidence score value does not meet the confidence threshold value.
Opening claim text (preview).
What is claimed is: 1. A method of access control, comprising: receiving an access request transaction from one of a first identity sensor, wherein the access request transaction requests access to a secure resource for a user and includes access request information associated with the user; determining current confidence information for the access request transaction, wherein the current confidence information includes a first identity confidence factor value that indicates a level of confidence in a user identity of the user and a first location confidence factor value that indicates a level of confidence in a current location of the user; determining prior confidence information for at least one prior access request transaction associated with the user from at least one second identity sensor, wherein the prior confidence information includes, for each prior access request transaction, a second identity confidence factor value that indicates the level of confidence of the user identity of the user and a second location confidence factor value that indicates the level of confidence of the location of the user; generating a total confidence score value based on a confidence function applied to the current confidence information and the prior confidence information; comparing the total confidence score value with a confidence threshold value for the secure resource associated with the access request transaction; granting access to the secure resource in response to determining that the total confidence score value meets the confidence threshold value; and denying the access to the secure resource in response to determining that the total confidence score value does not meet the confidence threshold value. 2. The method of claim 1 , wherein the at least one prior access request transaction associated with the user includes each prior access request transaction within a time period relative to a current time. 3. The method of claim 1 , wherein the at least one prior access request transaction associated with the user includes each prior access request transaction having a non-zero value for at least one of the second identity confidence factor value and the second location confidence factor value. 4. The method of claim 1 , wherein the at least one prior access request transaction associated with the user from the at least one second identity sensor comprises a plurality of prior access requests from a plurality of different identity sensors, wherein each of the plurality of different identity sensors is associated with a sensor-specific identity factor weight used to determine the respective second identity confidence factor value and a sensor-specific location factor weight used to determine the respective second location confidence factor value. 5. The method of claim 1 , further comprising: reducing a value of each second identity confidence factor value and each second location confidence factor value based on age relative to a current time. 6. The method of claim 5 , wherein reducing the value of each second identity confidence factor value and each second location confidence factor value based on age further comprises: applying a respective time-weighted factor to each second identity confidence factor value and each second location confidence factor value associated with each prior access request transaction to generate a respective time-weighted second identity confidence factor value and a respective time-weighted second location confidence factor value for each prior access request transaction, wherein each respective time-weighted factor is based on a difference between the current time and a respective transaction time of each prior access request transaction, and wherein the prior confidence information includes the respective time-weighted second identity confidence factor value and the respective time-weighted second location confidence factor value for each prior access request transaction. 7. The method of claim 5 , wherein the at least one prior access request transaction associated with the user includes each prior access request transaction within a time period relative to the current time, and wherein the at least one prior access request transaction associated with the user from the at least one second identity sensor comprises a plurality of prior access requests from a plurality of different identity sensors, wherein each of the plurality of different identity sensors is associated with a sensor-specific identity factor weight used to determine the respective second identity confidence factor value and a sensor-specific location factor weight used to determine the respective second location confidence factor value. 8. The method of claim 1 , wherein the confidence threshold value for the secure resource is a resource-specific confidence threshold value. 9. The method of claim 1 , wherein the access request information associated with the user for the access request transaction includes voice information, and wherein prior access request information associated with the at least one prior access request transaction associated with the user includes input information different from the voice information. 10. The method of claim 9 , wherein the input information different from the voice information includes at least one of: access badge information, non-voice biometric information, facial recognition information, user device network access information, secure credentials of user's mobile device, beacon based tracking information, or personal identification number information. 11. The method of claim 1 , wherein the confidence function uses an average of values from the current confidence information and the prior confidence information. 12. The method of claim 1 , further comprising: outputting one or more challenge notifications to the user in response to determining that the total confidence score value does not meet the confidence threshold value; receiving supplemental access request information from the user in response to the one or more challenge notifications; generating a supplemental confidence factor value based on the supplemental access request information; calculating an updated total confidence score value based on the confidence function applied to the current confidence information, the prior confidence information, and the supplemental confidence factor; and comparing the updated total confidence score value with the confidence threshold value for the access request transaction to determine whether to grant or deny the access. 13. An apparatus for access control, comprising: a memory; and a processor coupled with the memory and configured to: receive an access request transaction from one of a first identity sensor, wherein the access request transaction requests access to a secure resource for a user and includes access request information associated with the user; determine current confidence information for the access request transaction, wherein the current confidence information includes a first identity confidence factor value that indicates a level of confidence in a user identity of the user and a first location confidence factor value that indicates a level of confidence in a current location of the user; determine prior confidence information for at least one prior access request transaction associated with the user from at least one second identity sensor, wherein the prior confidence information includes, for each prior access request transaction, a second identity confidence factor value that indicates the level of confidence of the user identity of the user and a second location confidence factor va
Speaker identification or verification techniques · CPC title
the pass enabling tracking or indicating presence · CPC title
Location-sensitive, e.g. geographical location, GPS · CPC title
using biometric data, e.g. fingerprints, iris scans or voiceprints · CPC title
wherein the security policies are location-dependent, e.g. entities privileges depend on current location or allowing specific operations only from locally connected terminals · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.