Methods and systems for authenticating electronic messages using client-generated encryption keys
US-9065842-B2 · Jun 23, 2015 · US
US9553859B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9553859-B2 |
| Application number | US-201314108573-A |
| Country | US |
| Kind code | B2 |
| Filing date | Dec 17, 2013 |
| Priority date | Aug 8, 2013 |
| Publication date | Jan 24, 2017 |
| Grant date | Jan 24, 2017 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A communication device and method for authentication of a message being transmitted from the communication device. The method includes receiving, by a messaging utility, content of a message provided for transmission from the communication device. Based on a determination that the message requires user authentication before the message is transmitted to a recipient, the method further includes selecting, based on contextual data, one or more biometric capturing components of the communication device; triggering at least one selected biometric capturing component to capture a corresponding biometric input from a user of the communication device; and transmitting the message when the biometric input as belonging to an authorized user of the communication device. In one embodiment, a clearinghouse service authenticates a biometric input from a user of the communication device in order to certify the user and/or the message.
Opening claim text (preview).
What is claimed is: 1. A method for user authentication by a clearinghouse for a message being transmitted from a communication device to a recipient device, the method comprising: receiving, by a clearinghouse, a biometric input of a user for authenticating a message from a communication device; comparing the received biometric input against one or more clearinghouse biometric verification inputs of registered users in order to authenticate the message from the user of the communication device; in response to a successful authentication, generating a certification token for the authenticated message with the received biometric input incorporated into the certification token; and transmitting the certification token to the communication device for inclusion in the authenticated message being transmitted by the communication device to the recipient device. 2. The method of claim 1 , further comprising: prior to receiving biometric inputs for message authentication from the communication device: receiving a request to create a user account for the user; in response to receiving the request, selecting information about the user from an authoritative source; prompting the user to provide an entry of data corresponding to the selected information; in response to receiving, from the user, the data entry that corresponds to the selected information, prompting the user to submit one or more clearinghouse biometric verification inputs; associating the submitted clearinghouse biometric verification inputs with the user; and storing the clearinghouse biometric verification inputs and user identifier within a clearinghouse database for future access by the user via a communication device to authenticate a message. 3. The method of claim 1 , wherein: transmitting the certification token further comprises the clearinghouse embedding an expiration criterion with the certification token that dynamically invalidates the certification token based on an occurrence of one of more pre-established conditions at one of the communication device and the recipient device. 4. The method of claim 1 , wherein the clearinghouse generating and transmitting the certification token further comprises one or more of: receiving contextual information transmitted by the communication device; accessing information about the user in response to receiving the received contextual information; and incorporating the accessed information in the certification token for access by a recipient device. 5. A clearinghouse server comprising: a communication interface that enables communication with a communication device that generates messages for transmission to a recipient device; a network interface by which the clearing house server communicates with an authoritative source that provides unique identifying information about one or more users; a processor coupled to the communication interface and the network interface; a storage device coupled to the processor and which includes a certifying utility that executes on the processor to configure the clearinghouse server to: receive a biometric input of a user for authenticating a message from a communication device; compare the received biometric input against one or more clearinghouse biometric verification inputs of registered users in order to authenticate the message from the user of the communication device; in response to a successful authentication, generate a certification token for the authenticated message with the received biometric input incorporated into the certification token; and transmit the certification token to the communication device for inclusion in the authenticated message being transmitted by the communication device to the recipient device. 6. The clearinghouse server of claim 5 , wherein the certifying utility further configures the clearinghouse server to: prior to receiving biometric inputs for message authentication from the communication device: receive a request to create a user account for the user; in response to receiving the request, select information about the user from an authoritative source; prompt the user to provide an entry of data corresponding to the selected information; in response to receiving, from the user, the data entry that corresponds to the selected information, prompt the user to submit one or more clearinghouse biometric verification inputs; associate the submitted clearinghouse biometric verification inputs with the user; and store the clearinghouse biometric verification inputs and user identifier within a clearinghouse database for future access by the user via a communication device to authenticate a message. 7. The clearinghouse server of claim 5 , wherein: transmitting the certification token further comprises the clearinghouse embedding an expiration criterion with the certification token that dynamically invalidates the certification token based on an occurrence of one of more pre-established conditions at one of the communication device and the recipient device. 8. The clearinghouse server of claim 5 , wherein the clearinghouse transmitting the certification token further comprises one or more of: receiving contextual information transmitted by the communication device; accessing information about the user; and incorporating the accessed information in the certification token for access by a recipient device. 9. The method of claim 1 , further comprising: incorporating a clickable link into the certification token in response to the successful authentication of the message; receiving a selection of the clickable link incorporated into the certification token from the recipient device; and providing for display user information associated with the certification token to the recipient device. 10. The clearinghouse server of claim 5 , wherein the certifying utility further configures the clearinghouse server to: incorporate a clickable link into the certification token in response to the successful authentication of the message; receive a selection of the clickable link incorporated into the certification token from the recipient device; and provide for display user information associated with the certification token to the recipient device.
Protecting data integrity, e.g. using checksums, certificates or signatures · CPC title
Biological data, e.g. fingerprint, voice or retina (network architectures or network communication protocols for supporting authentication of entities using biometrical features in a packet data network H04L63/0861) · CPC title
using biometrical features, e.g. fingerprint, retina-scan (cryptographic mechanisms or cryptographic arrangements for entity authentication using biological data H04L9/3231) · CPC title
wherein the data content is protected, e.g. by encrypting or encapsulating the payload · CPC title
for providing a confidential data exchange among entities communicating through data packet networks · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.