Pairing Computing Devices According To A Multi-Level Security Protocol
US-2016066184-A1 · Mar 3, 2016 · US
US2016248752A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2016248752-A1 |
| Application number | US-201514630363-A |
| Country | US |
| Kind code | A1 |
| Filing date | Feb 24, 2015 |
| Priority date | Feb 24, 2015 |
| Publication date | Aug 25, 2016 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Systems and methods of the present invention provide for a first and second client computer configured to receive and transmit an authentication credential and at least one additional authentication credential respectively. The authentication credentials may be selected from authentication credentials known only to a user, identifying a client computer and/or identifying a characteristic unique to the user. A server computer communicatively coupled to the network may be configured to receive the authentication credentials and verify the identity of the user via a match, in a database, of a first authentication credential, a second authentication credential and a third authentication credential.
Opening claim text (preview).
The invention claimed is: 1 . A system, comprising: a first client computer communicatively coupled to a network and configured to receive and transmit an authentication credential selected from a plurality of authentication credentials comprising: a first authentication credential known only to a user; a second authentication credential identifying a client computer; and a third authentication credential identifying a characteristic unique to the user; a second client computer communicatively coupled to the network and configured to receive and transmit at least one additional authentication credential selected from the plurality of authentication credentials; and a server computer communicatively coupled to the network and configured to: receive, from the first client computer, the authentication credential; receive, from the second client computer, the at least one additional authentication credential; and verify the identity of the user via a match, within a database communicatively coupled to the network, to the first authentication credential, the second authentication credential and the third authentication credential. 2 . The system of claim 1 , wherein the first authentication credential comprises a user name, a password, a software-generated authentication challenge, or a shared secret. 3 . The system of claim 1 , wherein the second client computer is configured to display an alert that the authentication credential has been received. 4 . The system of claim 1 , wherein the second authentication credential comprises a private and public key pair. 5 . The system of claim 4 , wherein the private key is configured to digitally sign the authentication credential or the at least one additional authentication credential; and the public key is configured to verify a digital signature of the authentication credential or the at least one additional authentication credential. 6 . The system of claim 1 , wherein: the first client computer or the second client computer is further configured to: generate a public and private key pair; transmit a key or a private key to the server computer: and the server computer is further configured to publish and store the public key or the key. 7 . The system of claim 1 further comprising a client software configured to: receive and display an alert that the authentication credential has been received by the server computer; generate or receive the at least one additional authentication credential; receive input from the user indicating that the at least one additional authentication credential is authorized; and transmit the at least one additional authentication credential to the server computer. 8 . The system of claim 7 , wherein the at least one additional authentication credential is automatically generated by the client software. 9 . The system of claim 8 , wherein the at least one additional authentication credential comprises a private and public key pair generated upon installation of the client software. 10 . The system of claim 1 , wherein the identifying characteristic unique to the user comprises a biometric data about the user. 11 . A method, comprising the steps of: receiving, by a server computer communicatively coupled to a network: a first transmission, from a first client computer communicatively coupled to the network, comprising an authentication credential selected from a plurality of authentication credentials comprising: a first authentication credential known only to a user; a second authentication credential identifying a client computer; and a third authentication credential identifying a characteristic unique to the user; a second transmission, from a second client computer communicatively coupled to the network, comprising at least one additional authentication credential selected from the plurality of authentication credentials; and verifying, by the server computer, the identity of the user via a match, within a database communicatively coupled to the network, to the first authentication credential, the second authentication credential and the third authentication credential. 12 . The method of claim 11 , wherein the first authentication credential comprises a user name, a password, a software-generated authentication challenge, or a shared secret. 13 . The method of claim 11 , further comprising the step of generating and transmitting, by the server computer for display on the second client computer, an alert that the authentication credential has been received. 14 . The method of claim 11 , wherein the at least one additional authentication credential comprises a private and public key pair. 15 . The method of claim 14 , wherein the public key is configured to or verify a digital signature of the authentication credential or the at least one additional authentication credential; and the private key is configured to or digitally sign the authentication credential or the at least one additional authentication credential. 16 . The method of claim 11 , further comprising the steps of: receiving, by the server computer, a key or a public key from a key pair generated by the first client computer or the second client computer; and publishing, by the server computer, the public key or the. 17 . The method of claim 11 further comprising the steps of: generating and transmitting, by the server computer, to a client software: an alert that the authentication credential has been received by the server computer; and the at least one additional authentication credential; and receiving, by the server computer, from the client software, input from the user indicating that the at least one additional authentication credential is authorized. 18 . The method of claim 17 , wherein the at least one additional authentication credential is automatically generated by the client software. 19 . The method of claim 18 , wherein the at least one additional authentication credential comprises a private and public key pair generated upon installation of the client software. 20 . The method of claim 11 , wherein the identifying characteristic unique to the user comprises a biometric data about the user.
using biometrical features, e.g. fingerprint, retina-scan (cryptographic mechanisms or cryptographic arrangements for entity authentication using biological data H04L9/3231) · CPC title
using passwords (cryptographic mechanisms or cryptographic arrangements for entity authentication using a predetermined code H04L9/3226) · CPC title
applying multi-factor authentication · CPC title
wherein the data content is protected, e.g. by encrypting or encapsulating the payload · CPC title
using one-time-passwords · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.