User configured one-time password
US-2022188400-A1 · Jun 16, 2022 · US
US12155647B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-12155647-B2 |
| Application number | US-202117405910-A |
| Country | US |
| Kind code | B2 |
| Filing date | Aug 18, 2021 |
| Priority date | Mar 18, 2021 |
| Publication date | Nov 26, 2024 |
| Grant date | Nov 26, 2024 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
An information processing apparatus includes: a storage storing restriction information indicating a restriction that a first communication address of a user registered in an external authentication apparatus is to satisfy in order to be permitted to use the information processing apparatus based on an authentication linkage with the external authentication apparatus; and a processor configured to acquire first information indicating authentication success, the first information being issued by the external authentication apparatus and including a second communication address generated by the external authentication apparatus in association with the first communication address, transmit, to the second communication address included in the first information, second information requesting execution of communication with a predetermined verification device, acquire, from the predetermined verification device, a verification result as to whether the first communication address satisfies the restriction, the first communication address being a transmission source of the communication executed in response to the second information, and, in a case where the verification result indicates that the first communication address does not satisfy the restriction, perform control not to permit an authentication linkage with the external authentication apparatus for the user.
Opening claim text (preview).
What is claimed is: 1. An information processing apparatus comprising: a memory storing restriction information indicating a restriction that a first mail address of a user registered in an external authentication apparatus is to satisfy in order to be permitted to use the information processing apparatus based on an authentication linkage with the external authentication apparatus; and a processor in communication with the memory and configured to: acquire first information indicating authentication success, the first information being issued by the external authentication apparatus and including a second mail address generated by the external authentication apparatus in association with the first mail address, the second mail address being different from the first mail address, transmit, to the second mail address included in the first information, second information requesting execution of communication with a predetermined verification device, acquire, from the predetermined verification device, a verification result as to whether the first mail address satisfies the restriction, the first mail address being a transmission source of the communication executed in response to the second information, the external authentication apparatus not notifying the first mail address to the information processing apparatus, and, in a case where the verification result indicates that the first mail address does not satisfy the restriction, perform control not to permit an authentication linkage with the external authentication apparatus for the user. 2. The information processing apparatus according to claim 1 , wherein the processor is configured to receive, from the predetermined verification device, a determination result of validity of the first mail address based on a transfer path of the communication from the user is further received, and when the determination result indicates that the first mail address is not valid, an authentication linkage with the external authentication apparatus for the user is not permitted. 3. The information processing apparatus according to claim 2 , wherein the processor is configured to provide at least a part of the restriction information to the verification device, and the verification device determines whether the first mail address satisfies the restriction indicated by the restriction information provided from the processor, and provides a determination result to the processor. 4. The information processing apparatus according to claim 3 , wherein the processor is configured to: receive, after acquiring the first information, an input of identification information of the user in the information processing apparatus from the user, and provide, to the verification device, the restriction information indicating the restriction to be applied to the user, the restriction information being specified according to the received identification information. 5. The information processing apparatus according to claim 2 , wherein the processor is configured to: receive an input of identification information of the user in the information processing apparatus from the user after acquiring the first information, and, in a case where the verification result indicates that the first mail address satisfies the restriction, permit an authentication linkage for the user with the external authentication apparatus and register information indicating that the second mail address and the identification information correspond to each other. 6. The information processing apparatus according to claim 1 , wherein the processor is configured to provide at least a part of the restriction information to the verification device, and the verification device determines whether the first mail address satisfies the restriction indicated by the restriction information provided from the processor, and provides a determination result to the processor. 7. The information processing apparatus according to claim 6 , wherein the processor is configured to: receive, after acquiring the first information, an input of identification information of the user in the information processing apparatus from the user, and provide, to the verification device, the restriction information indicating the restriction to be applied to the user, the restriction information being specified according to the received identification information. 8. The information processing apparatus according to claim 1 , wherein the processor is configured to: receive an input of identification information of the user in the information processing apparatus from the user after acquiring the first information, and, in a case where the verification result indicates that the first mail address satisfies the restriction, permit an authentication linkage with the external authentication apparatus for the user and register information indicating that the second mail address and the identification information correspond to each other. 9. A non-transitory computer readable medium storing an information processing program causing a computer to execute a process for information processing, the computer including a memory storing restriction information indicating a restriction that a first mail address of a user registered in an external authentication apparatus is to satisfy in order to be permitted to use an information processing apparatus based on an authentication linkage with the external authentication apparatus, the process comprising: acquiring first information indicating authentication success, the first information being issued by the external authentication apparatus and including a second mail address generated by the external authentication apparatus in association with the first mail address, the second mail address being different from the first mail address, transmitting, to the second mail address included in the first information, second information requesting execution of communication with a predetermined verification device, acquiring, from the predetermined verification device, a verification result as to whether the first mail address satisfies the restriction, the first mail address being a transmission source of the communication executed in response to the second information, the external authentication apparatus not notifying the first mail address to the information processing apparatus, and, in a case where the verification result indicates that the first mail address does not satisfy the restriction, performing control not to permit an authentication linkage with the external authentication apparatus for the user.
Structures or tools for the administration of authentication · CPC title
using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title
providing single-sign-on or federations · CPC title
based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.