Authentication for network access related applications

US9391967B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9391967-B2
Application numberUS-201113976191-A
CountryUS
Kind codeB2
Filing dateDec 28, 2011
Priority dateDec 28, 2011
Publication dateJul 12, 2016
Grant dateJul 12, 2016

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

In one embodiment a controller comprises logic to receive, via a near field communication link, an identification packet generated by a remote authentication provider, associate an electronic signature with the identification packet, transmit the identification packet to a remote authentication provider, receive an authorization from the remote authentication provider, receive login information associated with the identification packet, and initiate a login procedure using the login information. Other embodiments may be described.

First claim

Opening claim text (preview).

What is claimed is: 1. A controller comprising: logic to: receive an authentication request from a user for an authentication for access via user initiation of a login procedure; receive, during the authentication, via a near field communication link with a data card, an identification packet generated by a remote authentication provider; sign the identification packet to attest that the identification packet was securely received via the near field communication link and that the user authorized the authentication request; transmit the identification packet to the remote authentication provider; receive an authorization from the remote authentication provider, responsive to information in the identification packet; after receipt of the authorization, retrieve from a local storage login information associated with the identification packet; and implement the login procedure using the login information, to enable the user to access a network resource remotely coupled to the controller. 2. The controller of claim 1 , wherein the logic comprises a near field wireless communication interface to communicate with a remote device. 3. The controller of claim 1 , further comprising logic to detect an initiation input signal. 4. The controller of claim 3 , wherein: the identification packet comprises data associated with the data card issued by the remote authentication provider; and the initiation input signal is to be generated in response to the data card being within a predetermined physical proximity of the controller. 5. The controller of claim 1 , further comprising logic to create a secure communication channel between the controller and the remote authentication provider. 6. The controller of claim 1 , further comprising logic to obtain a transaction authorization from the user of the controller. 7. The controller of claim 1 , further comprising logic to provide a login credential to the network resource coupled to the controller. 8. An electronic device, comprising: a processor to execute an operating system which is to implement an untrusted computing environment; and a controller, comprising: a memory; and logic to: receive an authentication request from a user for an authentication for access via user initiation of a login procedure; receive, during the authentication, via a near field communication link with a data card, an identification packet generated by a remote authentication provider; sign the identification packet to attest that the identification packet was securely received via the near field communication link and that the user authorized the authentication request; transmit the identification packet to the remote authentication provider; receive an authorization from the remote authentication provider, responsive to information in the identification packet; after receipt of the authorization, retrieve from a local storage login information associated with the identification packet; and implement the login procedure using the login information, to enable the user to access a network resource remotely coupled to the controller. 9. The electronic device of claim 8 , wherein the logic comprises a near field wireless communication interface to communicate with a remote device. 10. The electronic device of claim 8 , further comprising logic to detect an initiation input signal. 11. The electronic device of claim 10 , wherein: the identification packet comprises data associated with the data card issued by the remote authentication provider; and the initiation input signal is to be generated in response to the data card being within a predetermined physical proximity of the controller. 12. The electronic device of claim 8 , further comprising logic to create a secure communication channel between the controller and the remote authentication provider. 13. The electronic device of claim 8 , further comprising logic to obtain a transaction authorization from the user of the controller. 14. The electronic device of claim 8 , further comprising logic to provide a login credential to the network resource. 15. A method, comprising: receiving, during an authentication for access, via a near field communication link with a data card, an identification packet generated by a remote authentication provider; associating an electronic signature with the identification packet; transmitting the identification packet to the remote authentication provider; receiving an authorization from the remote authentication provider, responsive to information in the identification packet; responsive to the authorization, retrieving login information associated with the identification packet in a host proxy of an electronic device from a local database; and initiating a login procedure using the login information, to enable the user to access a network resource remotely coupled to the electronic device. 16. The method of claim 15 , further comprising detecting an initiation input signal. 17. The method of claim 16 , wherein: the identification packet comprises data associated with the data card issued by the remote authentication provider; and the initiation input signal is to be generated in response to the data card being within a predetermined physical proximity of the controller. 18. The method of claim 15 , further comprising creating a secure communication channel between a controller and the remote authentication provider. 19. The method of claim 15 , further comprising obtaining a transaction authorization from a user of a controller. 20. A computer program product comprising logic instructions stored on non-transitory computer readable medium which, when executed by a processor, configure the processor to: receive, during an authentication for access, via a near field communication link with a data card, an identification packet generated by a remote authentication provider; associate an electronic signature with the identification packet; transmit the identification packet to the remote authentication provider; receive an authorization from the remote authentication provider, responsive to information in the identification packet; responsive to the authorization, retrieve from a local storage login information associated with the identification packet in a host proxy of an electronic device from a local database; and initiate a login procedure using the login information, to enable the user to access a network resource remotely coupled to the electronic device. 21. The computer program product of claim 20 , further comprising logic instructions stored on non-transitory computer readable medium to implement a near field wireless communication interface to communicate with a remote device. 22. The computer program product of claim 20 , further comprising logic instructions stored on non-transitory computer readable medium to detect an initiation input signal. 23. The computer program product of claim 22 , wherein: the identification packet comprises data associated with the data card issued by the remote authentication provider; and the initiation input signal is to be generated in response to the data card being within a predetermined physical proximity of a controller. 24. The computer program product of claim 23 , further comprising logic instructions stored on non-transitory computer readable medium to create a secure communication channel between the electronic device and the remote a

Assignees

Inventors

Classifications

  • using different networks or channels, e.g. using out of band channels (cryptographic mechanisms or cryptographic arrangements for key distribution involving distinctive intermediate devices or communication paths H04L9/0827; cryptographic mechanisms or cryptographic arrangements for authentication using a plurality of channels H04L9/3215) · CPC title

  • Transactions dependent on location of M-devices · CPC title

  • by using a location-limited connection, e.g. near-field communication or limited proximity of entities · CPC title

  • Lightweight hardware, e.g. radio-frequency identification [RFID] or sensor · CPC title

  • H04L63/08Primary

    for authentication of entities (cryptographic mechanisms or cryptographic arrangements for entity authentication H04L9/32) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9391967B2 cover?
In one embodiment a controller comprises logic to receive, via a near field communication link, an identification packet generated by a remote authentication provider, associate an electronic signature with the identification packet, transmit the identification packet to a remote authentication provider, receive an authorization from the remote authentication provider, receive login information…
Who is the assignee on this patent?
Bakshi Sanjay, Smith Ned, Intel Corp
What technology area does this patent fall under?
Primary CPC classification H04L63/08. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Jul 12 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).