Binding to a user device

US2016277383A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2016277383-A1
Application numberUS-201615004297-A
CountryUS
Kind codeA1
Filing dateJan 22, 2016
Priority dateMar 16, 2015
Publication dateSep 22, 2016
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Providing access to a protected resource includes obtaining a first authentication factor for a user that is accessing the resource using a computing device, prompting the user to provide a second authentication factor, accessing the second authentication factor using a pairing code, determining if the second authentication factor is bound to the computing device, and allowing the user to access the protected resource in response to the first and second authentication factors being valid and the second authentication factor being bound to the computing device. The user may be prompted to tap a card to provide the second authentication factor. The first authentication factor may be a login id and password combination. The login id and password may be cached in the computing device. The second authentication factor may be a security card. Information on the security card may be encrypted and may be accessible using a pairing code.

First claim

Opening claim text (preview).

What is claimed is: 1 . A method of providing access to a protected resource, comprising: obtaining a first authentication factor for a user that is accessing the resource using a computing device; prompting the user to provide a second authentication factor; accessing the second authentication factor using a pairing code; determining if the second authentication factor is bound to the computing device; and allowing the user to access the protected resource in response to the first and second authentication factors being valid and the second authentication factor being bound to the computing device. 2 . A method, according to claim 1 , wherein the user is prompted to tap a card to provide the second authentication factor. 3 . A method, according to claim 1 , wherein the first authentication factor is a login id and password combination. 4 . A method, according to claim 3 , wherein at least one of: the login id, the password, and a corresponding ticket is cached in the computing device. 5 . A method, according to claim 1 , wherein the second authentication factor is a security card. 6 . A method, according to claim 5 , wherein information on the security card is encrypted and is accessible using a pairing code. 7 . A method, according to claim 6 , wherein the information on the security card includes at least one of: a one time password and a serial number for the card. 8 . A method, according to claim 7 , wherein the information on the security card is protected for integrity and authenticated. 9 . A method, according to claim 7 , further comprising: binding the security card to the computing device by storing data that includes at least one of: the serial number for the card and a serial number for the computing device. 10 . A method, according to claim 7 , further comprising: binding the security card to a user by storing data that includes at least one of: the serial number for the card and an identifier for the user. 11 . A method, according to claim 1 , wherein allowing the user to access the protected resource includes generating an ADFS token for the user and wherein the AFDS token allows access to the resource. 12 . A method, according to claim 1 , wherein the second authentication factor is one of: a cell phone and a security token having wireless communication capability. 13 . A non-transitory computer-readable medium containing software that provides access to a protected resource, the software comprising: executable code that obtains a first authentication factor for a user that is accessing the resource using a computing device; executable code that prompts the user to provide a second authentication factor; executable code that accesses the second authentication factor using a pairing code; executable code that determines if the second authentication factor is bound to the computing device; and executable code that allows the user to access the protected resource in response to the first and second authentication factors being valid and the second authentication factor being bound to the computing device. 14 . A non-transitory computer-readable medium, according to claim 13 , wherein the user is prompted to tap a card to provide the second authentication factor. 15 . A non-transitory computer-readable medium, according to claim 13 , wherein the first authentication factor is a login id and password combination. 16 . A non-transitory computer-readable medium, according to claim 15 , wherein at least one of: the login id, the password, and a corresponding ticket is cached in the computing device. 17 . A non-transitory computer-readable medium, according to claim 13 , wherein the second authentication factor is a security card. 18 . A non-transitory computer-readable medium, according to claim 17 , wherein information on the security card is encrypted and is accessible using a pairing code. 19 . A non-transitory computer-readable medium, according to claim 18 , wherein the information on the security card includes at least one of: a one time password and a serial number for the card. 20 . A non-transitory computer-readable medium, according to claim 19 , wherein the information on the security card is protected for integrity and authenticated. 21 . A non-transitory computer-readable medium, according to claim 19 , the software further comprising: executable code that binds the security card to the computing device by storing data that includes at least one of: the serial number for the card and a serial number for the computing device. 22 . A non-transitory computer-readable medium, according to claim 19 , the software further comprising: executable code that binds the security card to a user by storing data that includes at least one of: the serial number for the card and an identifier for the user. 23 . A non-transitory computer-readable medium, according to claim 13 , wherein allowing the user to access the protected resource includes generating an ADFS token for the user and wherein the AFDS token allows access to the resource. 24 . A non-transitory computer-readable medium, according to claim 13 , wherein the second authentication factor is one of: a cell phone and a security token having wireless communication capability.

Assignees

Inventors

Classifications

  • Authentication · CPC title

  • using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title

  • H04L63/083Primary

    using passwords (cryptographic mechanisms or cryptographic arrangements for entity authentication using a predetermined code H04L9/3226) · CPC title

  • Secure pairing of devices · CPC title

  • applying multi-factor authentication · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2016277383A1 cover?
Providing access to a protected resource includes obtaining a first authentication factor for a user that is accessing the resource using a computing device, prompting the user to provide a second authentication factor, accessing the second authentication factor using a pairing code, determining if the second authentication factor is bound to the computing device, and allowing the user to acces…
Who is the assignee on this patent?
Assa Abloy Ab
What technology area does this patent fall under?
Primary CPC classification H04L63/083. Mapped technology areas include Electricity.
When was this patent published?
Publication date Thu Sep 22 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 5 related publications on this page (citations in our corpus or others sharing the same primary CPC).