JP2011522327A5 - - Google Patents

Download PDF

Info

Publication number
JP2011522327A5
JP2011522327A5 JP2011511684A JP2011511684A JP2011522327A5 JP 2011522327 A5 JP2011522327 A5 JP 2011522327A5 JP 2011511684 A JP2011511684 A JP 2011511684A JP 2011511684 A JP2011511684 A JP 2011511684A JP 2011522327 A5 JP2011522327 A5 JP 2011522327A5
Authority
JP
Japan
Prior art keywords
user
identifier
evidence
verification
credentials
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
JP2011511684A
Other languages
English (en)
Other versions
JP2011522327A (ja
JP5038531B2 (ja
Filing date
Publication date
Priority claimed from US12/131,142 external-priority patent/US7979899B2/en
Application filed filed Critical
Publication of JP2011522327A publication Critical patent/JP2011522327A/ja
Publication of JP2011522327A5 publication Critical patent/JP2011522327A5/ja
Application granted granted Critical
Publication of JP5038531B2 publication Critical patent/JP5038531B2/ja
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Claims (19)

  1. アカウントネットワーク(account network)(100)内でユーザーの多要素認証(multiple-factor authentication)を行なう方法であって、
    前記アカウントネットワーク(100)にアクセスするために前記ユーザーによって用いられる機器(device)(102)で生成(generated)された前記ユーザーのユーザー資格情報(user credentials)(204)および機器資格情報(device credentials)(204)を受け取るステップと、
    前記ユーザー資格情報(204)のユーザー識別子(identifier)を前記機器資格情報(204)の機器識別子(identifier)に関連付け(associating)(206)て、前記ユーザーと前記機器との間の信頼関係(trust relationship)を表す(represent)ステップと、
    前記ユーザー資格情報(204)および前記機器資格情報(204)を評価(evaluating)して、検証結果(verification results)を生成する(314)ステップと、
    前記ユーザー資格情報(204)および前記機器資格情報(204)両方の前記検証結果に基づいて、前記ユーザーの識別(identity)の証拠(evidence)を提供する(320)ステップと
    前記ユーザー資格情報の検証は合格したが前記機器資格情報の検証が合格しない場合は、前記ユーザーによる前記ユーザー資格情報および前記機器資格情報を変更する試み(attempt)を阻止(blocking)するステップと、
    前記ユーザ資格情報と前記機器資格情報との双方の識別の証拠が、検証の合格を示す場合に、より高位の特権を許可し、前記ユーザ資格情報と前記機器資格情報とのいずれの識別の証拠も、検証の失敗を示す場合に、より低位の特権を許可するステップと、
    を含む方法。
  2. 前記ユーザーの識別の前記証拠は、前記ユーザー識別子および前記機器識別子の両方を含む、請求項1に記載の方法。
  3. 前記関連付けの動作は、
    前記アカウントネットワーク内の前記ユーザーのアカウントに前記ユーザー識別子と前記機器識別子を組み合わせて記録するステップを含む、請求項1に記載の方法。
  4. 前記関連付ける動作は、
    前記ユーザー識別子および前記機器識別子と少なくとも1つの他の機器識別子を記録するステップであって、前記記録動作は、前記機器識別子および前記少なくとも1つの他の機器識別子で識別される前記機器を、前記ユーザーの信頼できる機器(trusted devices)として指定する、ステップ
    を含む、請求項1に記載の方法。
  5. 前記提供する動作は、
    前記ユーザーの識別の前記証拠としてセキュリティトークンを生成するステップを含み、前記セキュリティトークンは、前記ユーザー識別子と前記機器識別子の両方を含む、請求項1に記載の方法。
  6. 前記提供の動作は、
    前記ユーザーの識別の前記証拠としてセキュリティトークンを生成するステップを含み、前記セキュリティトークンは、前記セキュリティトークンの受信者が前記セキュリティトークンから前記ユーザー識別子と前記機器識別子の両方にアクセスすることを可能にするプログラミングインタフェースを含む、請求項1に記載の方法。
  7. 前記関連付け動作(associating operation)の後に前記機器識別子から前記ユーザー識別子の関連付けを解除(disassociating)して、前記機器を、ユーザーが信頼できるとされる機器から削除(remove)するステップをさらに含む、請求項1に記載の方法。
  8. 前記提供動作(providing operation)は、前記ユーザー資格情報と前記機器資格情報両方の検証が合格した場合(upon successful verification)にのみ、前記識別の証拠を提供(provides)し、
    前記方法は、
    前記ユーザー資格情報と前記機器資格情報両方の検証(verification)が不合格(unsuccessful)である場合は、前記ユーザーの識別の前記証拠を保留(withholding)するステップ
    をさらに含む、請求項1に記載の方法。
  9. 前記提供動作は、前記ユーザー資格情報と前記機器資格情報両方の検証が合格した場合にのみ、前記識別の証拠を提供する
    請求項1に記載の方法。
  10. 前記提供動作は、前記ユーザー資格情報と前記機器資格情報両方の検証が合格した場合にのみ、前記識別の証拠を提供し、
    前記方法は、
    結果として前記ユーザー資格情報の検証は合格したが前記機器資格情報の検証が合格しなかった、前記ユーザー資格情報を使用した認証の試みを前記ユーザーに通知するステップ
    をさらに含む、請求項1に記載の方法。
  11. 前記識別の証拠を受け取るのに応答してアカウントネットワークリソースによって付与(granted)される特権(privilege)のレベルは、前記識別の証拠が、前記機器資格情報の検証が合格したことを示すかどうかに応じて決まる、請求項1に記載の方法。
  12. アカウントネットワーク内でユーザーの多要素認証を行なうコンピュータープロセスを行なうためのコンピューター実行可能命令を有するコンピューター可読記憶媒体(31)であって、前記コンピュータープロセスは、
    前記アカウントネットワーク(100)にアクセスするために、前記ユーザーによって用いられる機器(102)で生成された前記ユーザーのユーザー資格情報(204)および機器資格情報(204)を受け取るステップであって、前記ユーザー資格情報(204)は、前記ユーザーのユーザー識別子を含み、前記機器資格情報(204)は、前記機器(102)の機器識別子を含むステップと、
    前記アカウントネットワーク(100)内の前記ユーザーのアカウント(106)に前記ユーザー識別子と前記機器識別子を組み合わせて記録する(206)ことにより、前記ユーザーと前記機器(102)との間の信頼関係を表すステップと、
    前記ユーザー資格情報(204)および前記機器資格情報(204)を評価して、検証結果を生成するステップと、
    前記ユーザー資格情報(204)および前記機器資格情報(204)両方の前記検証結果に基づいて、前記ユーザーの識別の証拠を提供する(320)ステップと
    前記ユーザー資格情報の検証は合格したが前記機器資格情報の検証が合格しない場合は、前記ユーザーによる前記ユーザー資格情報および前記機器資格情報を変更する試み(attempt)を阻止(blocking)するステップと、
    前記ユーザ資格情報と前記機器資格情報との双方の識別の証拠が、検証の合格を示す場合に、より高位の特権を許可し、前記ユーザ資格情報と前記機器資格情報とのいずれの識別の証拠も、検証の失敗を示す場合に、より低位の特権を許可するステップと、
    を含むコンピューター可読記憶媒体(31)。
  13. 前記ユーザーの識別の前記証拠は、前記ユーザー識別子および前記機器識別子の両方を含む、請求項12に記載のコンピューター可読記憶媒体。
  14. 前記関連付けの動作は、
    前記ユーザー識別子および前記機器識別子と少なくとも1つの他の機器識別子を記録するステップであって、前記記録動作は、前記機器識別子および前記少なくとも1つの他の機器識別子で識別される前記機器を、前記ユーザーの信頼できる機器として指定する、ステップ
    を含む、請求項12に記載のコンピューター可読記憶媒体。
  15. 前記提供する動作は、
    前記ユーザーの識別の前記証拠としてセキュリティトークンを生成するステップを含み、前記セキュリティトークンは、前記ユーザー識別子と前記機器識別子の両方を含む、請求項12に記載のコンピューター可読記憶媒体。
  16. 前記提供の動作は、
    前記ユーザーの識別の前記証拠としてセキュリティトークンを生成するステップを含み、前記セキュリティトークンは、前記セキュリティトークンの受信者(recipient)が前記セキュリティトークンから前記ユーザー識別子と前記機器識別子の両方にアクセスすることを可能にするプログラミングインタフェースを含む、請求項12に記載のコンピューター可読記憶媒体。
  17. 前記識別の証拠を受け取るのに応答してアカウントネットワークリソースによって付与される特権のレベルは、前記識別の証拠が、前記機器資格情報の検証が合格したことを示すかどうかに応じて決まる、請求項12に記載のコンピューター可読記憶媒体。
  18. アカウントネットワークリソース(110)にアクセスするためのあるレベルの特権をユーザーに許可する方法であって、
    ユーザーが前記アカウントネットワークリソース(110)へのアクセスを試みる際に用いる機器(102)から識別の証拠(324)を受け取るステップと、
    前記識別の証拠(324)を調べて(326)、前記識別の証拠が、前記アカウントネットワークリソース(110)に信頼できる認証提供者(104)による前記ユーザーのユーザー資格情報(204)および前記機器(102)の機器資格情報(204)両方の検証が合格したことを示すかどうかを判定するステップと、
    前記ユーザー資格情報の検証は合格したが前記機器資格情報の検証が合格しない場合は、前記ユーザーによる前記ユーザー資格情報および前記機器資格情報を変更する試み(attempt)を阻止(blocking)するステップと、
    前記識別の証拠が、前記認証提供者(104)による前記ユーザーの前記ユーザー資格情報(204)および前記機器(102)の前記機器資格情報(204)両方の検証が合格したことを示す場合は、第1のレベルの特権を付与する(326)ステップと、
    前記識別の証拠(324)が、前記認証提供者(104)による前記ユーザーの前記ユーザー資格情報(204)および前記機器の前記機器資格情報両方の検証が不合格であったことを示す場合は、第2のレベルの特権を付与する(326)ステップと
    を含み、
    前記第1のレベルの特権が、前記第2のレベルの特権より高い、
    方法。
  19. 前記識別の証拠は、前記アカウントネットワークリソースが前記ユーザー資格情報のユーザー識別子および前記機器資格情報の機器識別子にアクセスすることができるプログラミングインタフェースを提供するセキュリティトークンを含む、請求項18に記載の方法。
JP2011511684A 2008-06-02 2009-05-04 信頼できる機器に限定した認証 Active JP5038531B2 (ja)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US12/131,142 2008-06-02
US12/131,142 US7979899B2 (en) 2008-06-02 2008-06-02 Trusted device-specific authentication
PCT/US2009/042667 WO2009148746A2 (en) 2008-06-02 2009-05-04 Trusted device-specific authentication

Publications (3)

Publication Number Publication Date
JP2011522327A JP2011522327A (ja) 2011-07-28
JP2011522327A5 true JP2011522327A5 (ja) 2012-03-15
JP5038531B2 JP5038531B2 (ja) 2012-10-03

Family

ID=41381542

Family Applications (1)

Application Number Title Priority Date Filing Date
JP2011511684A Active JP5038531B2 (ja) 2008-06-02 2009-05-04 信頼できる機器に限定した認証

Country Status (6)

Country Link
US (2) US7979899B2 (ja)
EP (1) EP2283669B1 (ja)
JP (1) JP5038531B2 (ja)
KR (1) KR101534890B1 (ja)
CN (1) CN102047709B (ja)
WO (1) WO2009148746A2 (ja)

Families Citing this family (206)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9002018B2 (en) * 2006-05-09 2015-04-07 Sync Up Technologies Corporation Encryption key exchange system and method
US8327142B2 (en) 2006-09-27 2012-12-04 Secureauth Corporation System and method for facilitating secure online transactions
US8301877B2 (en) 2008-03-10 2012-10-30 Secureauth Corporation System and method for configuring a valid duration period for a digital certificate
KR100897512B1 (ko) * 2008-08-07 2009-05-15 주식회사 포비커 데이터 방송에 적응적인 광고 방법 및 시스템
US20100042848A1 (en) * 2008-08-13 2010-02-18 Plantronics, Inc. Personalized I/O Device as Trusted Data Source
US9053480B1 (en) 2008-09-30 2015-06-09 Amazon Technologies, Inc. Secure validation using hardware security modules
US8892868B1 (en) * 2008-09-30 2014-11-18 Amazon Technologies, Inc. Hardening tokenization security and key rotation
US10867298B1 (en) 2008-10-31 2020-12-15 Wells Fargo Bank, N.A. Payment vehicle with on and off function
US20100114768A1 (en) 2008-10-31 2010-05-06 Wachovia Corporation Payment vehicle with on and off function
US20100131641A1 (en) * 2008-11-26 2010-05-27 Novell, Inc. System and method for implementing a wireless query and display interface
US8290135B2 (en) 2009-02-27 2012-10-16 Research In Motion Limited Systems and methods for facilitating conference calls using security keys
US20100220634A1 (en) * 2009-02-27 2010-09-02 Douglas Gisby Systems and methods for facilitating conference calls using security tokens
CN101834834A (zh) * 2009-03-09 2010-09-15 华为软件技术有限公司 一种鉴权方法、装置及鉴权系统
US20120226780A1 (en) * 2009-04-07 2012-09-06 Omnifone Ltd. Enabling digital media content to be downloaded to and used on multiple types of computing device
US9047458B2 (en) 2009-06-19 2015-06-02 Deviceauthority, Inc. Network access protection
US8726407B2 (en) 2009-10-16 2014-05-13 Deviceauthority, Inc. Authentication of computing and communications hardware
US8319606B2 (en) * 2009-10-29 2012-11-27 Corestreet, Ltd. Universal validation module for access control systems
US9769164B2 (en) * 2009-10-29 2017-09-19 Assa Abloy Ab Universal validation module for access control systems
US8613067B2 (en) 2009-11-17 2013-12-17 Secureauth Corporation Single sign on with multiple authentication factors
WO2011106716A1 (en) * 2010-02-25 2011-09-01 Secureauth Corporation Security device provisioning
CA2789291A1 (en) * 2010-02-26 2011-09-01 General Instrument Corporation Dynamic cryptographic subscriber-device identity binding for subscriber mobility
NL1037813C2 (en) * 2010-03-18 2011-09-20 Stichting Bioxs System and method for checking the authenticity of the identity of a person logging into a computer network.
EP2604017B1 (en) * 2010-08-10 2017-10-04 Google Technology Holdings LLC System and method for cognizant transport layer security
US9940682B2 (en) 2010-08-11 2018-04-10 Nike, Inc. Athletic activity user experience and environment
US8453222B1 (en) * 2010-08-20 2013-05-28 Symantec Corporation Possession of synchronized data as authentication factor in online services
US8601602B1 (en) 2010-08-31 2013-12-03 Google Inc. Enhanced multi-factor authentication
KR20130142107A (ko) * 2010-09-13 2013-12-27 톰슨 라이센싱 임시 신뢰 장치를 위한 방법 및 장치
US8260931B2 (en) * 2010-10-02 2012-09-04 Synopsys, Inc. Secure provisioning of resources in cloud infrastructure
JP5717407B2 (ja) * 2010-11-15 2015-05-13 キヤノン株式会社 印刷中継システム、画像形成装置、システムの制御方法、およびプログラム
US8868915B2 (en) * 2010-12-06 2014-10-21 Verizon Patent And Licensing Inc. Secure authentication for client application access to protected resources
US20120167194A1 (en) * 2010-12-22 2012-06-28 Reese Kenneth W Client hardware authenticated transactions
WO2013009385A2 (en) * 2011-07-08 2013-01-17 Uniloc Usa Device-bound certificate authentication
AU2011100168B4 (en) 2011-02-09 2011-06-30 Device Authority Ltd Device-bound certificate authentication
US8935766B2 (en) * 2011-01-19 2015-01-13 Qualcomm Incorporated Record creation for resolution of application identifier to connectivity identifier
WO2012119015A1 (en) * 2011-03-01 2012-09-07 General Instrument Corporation Providing subscriber consent in an operator exchange
US8949951B2 (en) * 2011-03-04 2015-02-03 Red Hat, Inc. Generating modular security delegates for applications
US9112682B2 (en) * 2011-03-15 2015-08-18 Red Hat, Inc. Generating modular security delegates for applications
US9071422B2 (en) * 2011-04-20 2015-06-30 Innodis Co., Ltd. Access authentication method for multiple devices and platforms
AU2011101295B4 (en) 2011-06-13 2012-08-02 Device Authority Ltd Hardware identity in multi-factor authentication layer
US9075979B1 (en) 2011-08-11 2015-07-07 Google Inc. Authentication based on proximity to mobile device
US8752154B2 (en) * 2011-08-11 2014-06-10 Bank Of America Corporation System and method for authenticating a user
US8752124B2 (en) 2011-08-15 2014-06-10 Bank Of America Corporation Apparatus and method for performing real-time authentication using subject token combinations
AU2011101297B4 (en) 2011-08-15 2012-06-14 Uniloc Usa, Inc. Remote recognition of an association between remote devices
US8539558B2 (en) * 2011-08-15 2013-09-17 Bank Of America Corporation Method and apparatus for token-based token termination
US8789143B2 (en) 2011-08-15 2014-07-22 Bank Of America Corporation Method and apparatus for token-based conditioning
US8732814B2 (en) * 2011-08-15 2014-05-20 Bank Of America Corporation Method and apparatus for token-based packet prioritization
US8950002B2 (en) 2011-08-15 2015-02-03 Bank Of America Corporation Method and apparatus for token-based access of related resources
US8752143B2 (en) 2011-08-15 2014-06-10 Bank Of America Corporation Method and apparatus for token-based reassignment of privileges
US9361443B2 (en) 2011-08-15 2016-06-07 Bank Of America Corporation Method and apparatus for token-based combining of authentication methods
US8806602B2 (en) 2011-08-15 2014-08-12 Bank Of America Corporation Apparatus and method for performing end-to-end encryption
DE102011110898A1 (de) 2011-08-17 2013-02-21 Advanced Information Processing Systems Sp. z o.o. Verfahren zur Authentifizierung eines Benutzers zum Gewähren eines Zugangs zu Diensten eines Computersystems, sowie zugehöriges Computersystem, Authentifizierungsserver und Kommunikationsgerät mit Authentifizierungsapplikation
US8798273B2 (en) 2011-08-19 2014-08-05 International Business Machines Corporation Extending credential type to group Key Management Interoperability Protocol (KMIP) clients
DE112011105696T5 (de) 2011-09-30 2014-07-24 Hewlett-Packard Development Company, L.P. Bios-Zugangsverwaltung
WO2013066016A1 (ko) * 2011-11-04 2013-05-10 주식회사 케이티 신뢰관계 형성 방법 및 이를 위한 내장 uⅰcc
KR101986312B1 (ko) 2011-11-04 2019-06-05 주식회사 케이티 신뢰관계 형성 방법 및 이를 위한 내장 uⅰcc
US9438575B2 (en) * 2011-12-22 2016-09-06 Paypal, Inc. Smart phone login using QR code
US8751794B2 (en) * 2011-12-28 2014-06-10 Pitney Bowes Inc. System and method for secure nework login
US9887997B2 (en) * 2011-12-28 2018-02-06 Intel Corporation Web authentication using client platform root of trust
US10282531B1 (en) 2012-01-26 2019-05-07 United Services Automobile Association (Usaa) Quick-logon for computing device
US9237146B1 (en) 2012-01-26 2016-01-12 United Services Automobile Association Quick-logon for computing device
US9367678B2 (en) * 2012-02-29 2016-06-14 Red Hat, Inc. Password authentication
US9697346B2 (en) * 2012-03-06 2017-07-04 Cisco Technology, Inc. Method and apparatus for identifying and associating devices using visual recognition
EP2842258B1 (en) * 2012-03-08 2017-03-01 Intel Corporation Multi-factor certificate authority
US20160337351A1 (en) * 2012-03-16 2016-11-17 Acuity Systems, Inc. Authentication system
CN103368928B (zh) * 2012-04-11 2018-04-27 富泰华工业(深圳)有限公司 帐号密码重置系统及方法
US20150073987A1 (en) 2012-04-17 2015-03-12 Zighra Inc. Fraud detection system, method, and device
US20130275282A1 (en) 2012-04-17 2013-10-17 Microsoft Corporation Anonymous billing
US11424930B2 (en) * 2012-05-22 2022-08-23 Barclays Bank Delaware Systems and methods for providing account information
US8984111B2 (en) 2012-06-15 2015-03-17 Symantec Corporation Techniques for providing dynamic account and device management
US9317689B2 (en) * 2012-06-15 2016-04-19 Visa International Service Association Method and apparatus for secure application execution
US9177129B2 (en) * 2012-06-27 2015-11-03 Intel Corporation Devices, systems, and methods for monitoring and asserting trust level using persistent trust log
US9832189B2 (en) * 2012-06-29 2017-11-28 Apple Inc. Automatic association of authentication credentials with biometrics
US20140013108A1 (en) * 2012-07-06 2014-01-09 Jani Pellikka On-Demand Identity Attribute Verification and Certification For Services
US20140019753A1 (en) * 2012-07-10 2014-01-16 John Houston Lowry Cloud key management
CN103581114A (zh) * 2012-07-20 2014-02-12 上海湛泸网络科技有限公司 认证方法及其认证系统
JP5632429B2 (ja) * 2012-08-28 2014-11-26 Kddi株式会社 オープンな通信環境にクローズな通信環境を構築するサービス認証方法及びシステム
US9641521B2 (en) * 2012-09-14 2017-05-02 Iovation Llc Systems and methods for network connected authentication
US8539567B1 (en) * 2012-09-22 2013-09-17 Nest Labs, Inc. Multi-tiered authentication methods for facilitating communications amongst smart home devices and cloud-based servers
US9444817B2 (en) 2012-09-27 2016-09-13 Microsoft Technology Licensing, Llc Facilitating claim use by service providers
US9449156B2 (en) 2012-10-01 2016-09-20 Microsoft Technology Licensing, Llc Using trusted devices to augment location-based account protection
US8843741B2 (en) * 2012-10-26 2014-09-23 Cloudpath Networks, Inc. System and method for providing a certificate for network access
CN103023885B (zh) * 2012-11-26 2015-09-16 北京奇虎科技有限公司 安全数据处理方法及系统
US9172699B1 (en) * 2012-11-30 2015-10-27 Microstrategy Incorporated Associating a device with a user account
US9769159B2 (en) * 2012-12-14 2017-09-19 Microsoft Technology Licensing, Llc Cookie optimization
US10033719B1 (en) * 2012-12-20 2018-07-24 Amazon Technologies, Inc. Mobile work platform for remote data centers
LT2936369T (lt) * 2012-12-21 2020-07-27 Biobex, Llc Slaptažodžio patvirtinimas, naudojant klaviatūra ir saugų slaptažodžio įvedimo režimą
US9130920B2 (en) 2013-01-07 2015-09-08 Zettaset, Inc. Monitoring of authorization-exceeding activity in distributed networks
US9622075B2 (en) * 2013-01-31 2017-04-11 Dell Products L.P. System and method for adaptive multifactor authentication
US8935768B1 (en) * 2013-02-21 2015-01-13 Ca, Inc. Controlling client access to email responsive to email class levels
JP5596194B2 (ja) * 2013-02-28 2014-09-24 シャープ株式会社 認証装置、認証装置の制御方法、通信装置、認証システム、制御プログラム、および記録媒体
US20140259135A1 (en) * 2013-03-08 2014-09-11 Signature Systems Llc Method and system for simplified user registration on a website
US10110578B1 (en) * 2013-03-12 2018-10-23 Amazon Technologies, Inc. Source-inclusive credential verification
US9143496B2 (en) 2013-03-13 2015-09-22 Uniloc Luxembourg S.A. Device authentication using device environment information
US9286466B2 (en) 2013-03-15 2016-03-15 Uniloc Luxembourg S.A. Registration and authentication of computing devices using a digital skeleton key
GB2512613A (en) * 2013-04-03 2014-10-08 Cloudzync Ltd Secure communications system
WO2014172670A1 (en) * 2013-04-19 2014-10-23 Twitter, Inc. Method and system for establishing a trust association
CN104125565A (zh) * 2013-04-23 2014-10-29 中兴通讯股份有限公司 一种基于oma dm实现终端认证的方法、终端及服务器
BR112016000122B1 (pt) * 2013-07-05 2022-11-01 Sgx As Método e sistema relacionados à autenticação de usuário para acessar redes de dados
RU2583710C2 (ru) 2013-07-23 2016-05-10 Закрытое акционерное общество "Лаборатория Касперского" Система и способ обеспечения конфиденциальности информации, используемой во время операций аутентификации и авторизации, при использовании доверенного устройства
US10069868B2 (en) * 2014-03-28 2018-09-04 Intel Corporation Systems and methods to facilitate multi-factor authentication policy enforcement using one or more policy handlers
US9514463B2 (en) 2014-04-11 2016-12-06 Bank Of America Corporation Determination of customer presence based on communication of a mobile communication device digital signature
US10121142B2 (en) 2014-04-11 2018-11-06 Bank Of America Corporation User authentication by token and comparison to visitation pattern
US9424575B2 (en) * 2014-04-11 2016-08-23 Bank Of America Corporation User authentication by operating system-level token
US9588342B2 (en) 2014-04-11 2017-03-07 Bank Of America Corporation Customer recognition through use of an optical head-mounted display in a wearable computing device
US20170309552A1 (en) * 2014-05-07 2017-10-26 Uber Technologies, Inc. System and method for verifying users for a network service using existing users
US10212136B1 (en) 2014-07-07 2019-02-19 Microstrategy Incorporated Workstation log-in
US10028081B2 (en) 2014-07-10 2018-07-17 Bank Of America Corporation User authentication
US9699599B2 (en) 2014-07-10 2017-07-04 Bank Of America Corporation Tracking associate locations
US10332050B2 (en) 2014-07-10 2019-06-25 Bank Of America Corporation Identifying personnel-staffing adjustments based on indoor positioning system detection of physical customer presence
US9734643B2 (en) 2014-07-10 2017-08-15 Bank Of America Corporation Accessing secure areas based on identification via personal device
US9471759B2 (en) 2014-07-10 2016-10-18 Bank Of America Corporation Enabling device functionality based on indoor positioning system detection of physical customer presence
US10108952B2 (en) 2014-07-10 2018-10-23 Bank Of America Corporation Customer identification
US10074130B2 (en) 2014-07-10 2018-09-11 Bank Of America Corporation Generating customer alerts based on indoor positioning system detection of physical customer presence
US9659316B2 (en) 2014-07-10 2017-05-23 Bank Of America Corporation Providing navigation functionality in a retail location using local positioning technology
US9691092B2 (en) 2014-07-10 2017-06-27 Bank Of America Corporation Predicting and responding to customer needs using local positioning technology
US9432804B2 (en) 2014-07-10 2016-08-30 Bank Of America Corporation Processing of pre-staged transactions
US10278069B2 (en) * 2014-08-07 2019-04-30 Mobile Iron, Inc. Device identification in service authorization
US10187799B2 (en) 2014-08-19 2019-01-22 Zighra Inc. System and method for implicit authentication
US10419419B2 (en) * 2014-09-24 2019-09-17 Intel Corporation Technologies for sensor action verification
US9553843B1 (en) 2014-10-08 2017-01-24 Google Inc. Service directory profile for a fabric network
CN104320163B (zh) * 2014-10-10 2017-01-25 安徽华米信息科技有限公司 一种通讯方法及装置
CN105592014B (zh) * 2014-10-24 2019-02-15 阿里巴巴集团控股有限公司 一种可信终端验证方法、装置
US10069814B2 (en) * 2014-10-28 2018-09-04 Ca, Inc. Single sign on across multiple devices using a unique machine identification
US20160162900A1 (en) * 2014-12-09 2016-06-09 Zighra Inc. Fraud detection system, method, and device
EP3238125B1 (en) 2014-12-26 2020-11-04 McAfee, LLC Trusted updates
US10439815B1 (en) * 2014-12-30 2019-10-08 Morphotrust Usa, Llc User data validation for digital identifications
US9652035B2 (en) * 2015-02-23 2017-05-16 International Business Machines Corporation Interfacing via heads-up display using eye contact
US10554676B2 (en) 2015-03-03 2020-02-04 Zighra Inc. System and method for behavioural biometric authentication using program modelling
US11429975B1 (en) 2015-03-27 2022-08-30 Wells Fargo Bank, N.A. Token management system
US10701067B1 (en) 2015-04-24 2020-06-30 Microstrategy Incorporated Credential management using wearable devices
US10298563B2 (en) * 2015-04-29 2019-05-21 Hewlett Packard Enterprise Development Lp Multi-factor authorization for IEEE 802.1x-enabled networks
CN106302308B (zh) * 2015-05-12 2019-12-24 阿里巴巴集团控股有限公司 一种信任登录方法和装置
US10187357B2 (en) * 2015-07-05 2019-01-22 M2MD Technologies, Inc. Method and system for internetwork communication with machine devices
CN106341233A (zh) * 2015-07-08 2017-01-18 阿里巴巴集团控股有限公司 客户端登录服务器端的鉴权方法、装置、系统及电子设备
US10382958B2 (en) 2015-07-31 2019-08-13 Telefonaktiebolaget Lm Ericsson (Publ) Methods and devices of registering, verifying identity of, and invalidating non-SIM mobile terminals accessing a wireless communication network
US11170364B1 (en) 2015-07-31 2021-11-09 Wells Fargo Bank, N.A. Connected payment card systems and methods
US10171439B2 (en) * 2015-09-24 2019-01-01 International Business Machines Corporation Owner based device authentication and authorization for network access
US9825938B2 (en) 2015-10-13 2017-11-21 Cloudpath Networks, Inc. System and method for managing certificate based secure network access with a certificate having a buffer period prior to expiration
US9967244B2 (en) 2015-10-14 2018-05-08 Microsoft Technology Licensing, Llc Multi-factor user authentication framework using asymmetric key
US20170109741A1 (en) * 2015-10-16 2017-04-20 Bank Of America Corporation Tokenization of Financial Account Information for Use in Transactions
US9942223B2 (en) * 2015-11-25 2018-04-10 Microsoft Technology Licensing, Llc. Automated device discovery of pairing-eligible devices for authentication
US10333915B2 (en) * 2015-12-11 2019-06-25 Oath Inc. Customization of user account authentication
CN106878970B (zh) * 2015-12-14 2020-05-05 阿里巴巴集团控股有限公司 变更手机号码的业务请求的识别方法及装置
KR101739098B1 (ko) * 2015-12-28 2017-05-24 주식회사 피노텍 복수 단말에서 자필서명을 이용한 본인 확인 시스템 및 방법
US10231128B1 (en) 2016-02-08 2019-03-12 Microstrategy Incorporated Proximity-based device access
US10855664B1 (en) 2016-02-08 2020-12-01 Microstrategy Incorporated Proximity-based logical access
KR102483836B1 (ko) * 2016-02-19 2023-01-03 삼성전자주식회사 전자 장치 및 그의 동작 방법
US10305885B2 (en) * 2016-03-03 2019-05-28 Blackberry Limited Accessing enterprise resources using provisioned certificates
US20170300673A1 (en) * 2016-04-19 2017-10-19 Brillio LLC Information apparatus and method for authorizing user of augment reality apparatus
EP3244360A1 (de) * 2016-05-12 2017-11-15 Skidata Ag Verfahren zur registrierung von geräten, insbesondere von zugangskontrollvorrichtungen oder bezahl- bzw. verkaufsautomaten bei einem server eines systems, welches mehrere derartige geräte umfasst
CN106411837A (zh) * 2016-05-30 2017-02-15 深圳市永兴元科技有限公司 权限管理方法和装置
US12130937B1 (en) 2016-07-01 2024-10-29 Wells Fargo Bank, N.A. Control tower for prospective transactions
US11935020B1 (en) 2016-07-01 2024-03-19 Wells Fargo Bank, N.A. Control tower for prospective transactions
US11386223B1 (en) 2016-07-01 2022-07-12 Wells Fargo Bank, N.A. Access control tower
US10992679B1 (en) 2016-07-01 2021-04-27 Wells Fargo Bank, N.A. Access control tower
US11615402B1 (en) 2016-07-01 2023-03-28 Wells Fargo Bank, N.A. Access control tower
US11886611B1 (en) 2016-07-01 2024-01-30 Wells Fargo Bank, N.A. Control tower for virtual rewards currency
WO2018045475A1 (en) * 2016-09-12 2018-03-15 Nanoport Technology Inc. Secure indirect access provisioning of off-line unpowered devices by centralized authority
US20190251561A1 (en) * 2016-11-01 2019-08-15 Entersekt International Limited Verifying an association between a communication device and a user
WO2018187960A1 (zh) * 2017-04-12 2018-10-18 福建联迪商用设备有限公司 一种 Root 权限管控的方法及系统
US10657242B1 (en) 2017-04-17 2020-05-19 Microstrategy Incorporated Proximity-based access
US11140157B1 (en) 2017-04-17 2021-10-05 Microstrategy Incorporated Proximity-based access
US10771458B1 (en) 2017-04-17 2020-09-08 MicoStrategy Incorporated Proximity-based user authentication
US11556936B1 (en) 2017-04-25 2023-01-17 Wells Fargo Bank, N.A. System and method for card control
WO2018207174A1 (en) * 2017-05-07 2018-11-15 Shay Rapaport Method and system for sharing a network enabled entity
US10089801B1 (en) 2017-05-15 2018-10-02 Amazon Technologies, Inc. Universal access control device
CN109039987A (zh) * 2017-06-08 2018-12-18 北京京东尚科信息技术有限公司 一种用户账户登录方法、装置、电子设备和存储介质
US10574662B2 (en) 2017-06-20 2020-02-25 Bank Of America Corporation System for authentication of a user based on multi-factor passively acquired data
US10360733B2 (en) 2017-06-20 2019-07-23 Bank Of America Corporation System controlled augmented resource facility
US11062388B1 (en) 2017-07-06 2021-07-13 Wells Fargo Bank, N.A Data control tower
US11354399B2 (en) * 2017-07-17 2022-06-07 Hewlett-Packard Development Company, L.P. Authentication of entitlement certificates
US10541977B2 (en) * 2017-07-25 2020-01-21 Pacesetter, Inc. Utilizing signed credentials for secure communication with an implantable medical device
US10491595B2 (en) * 2017-07-31 2019-11-26 Airwatch, Llc Systems and methods for controlling email access
US10491596B2 (en) 2017-07-31 2019-11-26 Vmware, Inc. Systems and methods for controlling email access
US10673831B2 (en) * 2017-08-11 2020-06-02 Mastercard International Incorporated Systems and methods for automating security controls between computer networks
US10498538B2 (en) * 2017-09-25 2019-12-03 Amazon Technologies, Inc. Time-bound secure access
US11368451B2 (en) 2017-10-19 2022-06-21 Google Llc Two-factor authentication systems and methods
US11188887B1 (en) 2017-11-20 2021-11-30 Wells Fargo Bank, N.A. Systems and methods for payment information access management
US20190278903A1 (en) * 2018-03-06 2019-09-12 GM Global Technology Operations LLC Vehicle control module security credential replacement
US10917790B2 (en) * 2018-06-01 2021-02-09 Apple Inc. Server trust evaluation based authentication
US11251956B2 (en) * 2018-07-02 2022-02-15 Avaya Inc. Federated blockchain identity model and secure personally identifiable information data transmission model for RCS
US11695783B2 (en) * 2018-08-13 2023-07-04 Ares Technologies, Inc. Systems, devices, and methods for determining a confidence level associated with a device using heuristics of trust
US11824882B2 (en) * 2018-08-13 2023-11-21 Ares Technologies, Inc. Systems, devices, and methods for determining a confidence level associated with a device using heuristics of trust
US10733473B2 (en) 2018-09-20 2020-08-04 Uber Technologies Inc. Object verification for a network-based service
US10999299B2 (en) 2018-10-09 2021-05-04 Uber Technologies, Inc. Location-spoofing detection system for a network service
CN109492376B (zh) * 2018-11-07 2021-11-12 浙江齐治科技股份有限公司 设备访问权限的控制方法、装置及堡垒机
US11489833B2 (en) * 2019-01-31 2022-11-01 Slack Technologies, Llc Methods, systems, and apparatuses for improved multi-factor authentication in a multi-app communication system
US20220070161A1 (en) * 2019-03-04 2022-03-03 Hitachi Vantara Llc Multi-way trust formation in a distributed system
US11431694B2 (en) * 2019-07-10 2022-08-30 Advanced New Technologies Co., Ltd. Secure account modification
US11552798B2 (en) * 2019-07-30 2023-01-10 Waymo Llc Method and system for authenticating a secure credential transfer to a device
US11700121B2 (en) * 2019-09-13 2023-07-11 Amazon Technologies, Inc. Secure authorization for sensitive information
US20210141888A1 (en) * 2019-11-12 2021-05-13 Richard Philip Hires Apparatus, System and Method for Authenticating a User
US11140239B2 (en) 2019-12-30 2021-10-05 Motorola Mobility Llc End a shareable device interactive session based on user intent
US11019191B1 (en) 2019-12-30 2021-05-25 Motorola Mobility Llc Claim a shareable device for personalized interactive session
US11640453B2 (en) 2019-12-30 2023-05-02 Motorola Mobility Llc User authentication facilitated by an additional device
US11284264B2 (en) * 2019-12-30 2022-03-22 Motorola Mobility Llc Shareable device use based on user identifiable information
US11770374B1 (en) 2019-12-31 2023-09-26 Cigna Intellectual Property, Inc. Computer user credentialing and verification system
US11770377B1 (en) * 2020-06-29 2023-09-26 Cyral Inc. Non-in line data monitoring and security services
US10992606B1 (en) 2020-09-04 2021-04-27 Wells Fargo Bank, N.A. Synchronous interfacing with unaffiliated networked systems to alter functionality of sets of electronic assets
US11546443B2 (en) * 2020-09-11 2023-01-03 Microsoft Technology Licensing, Llc Connected focus time experience that spans multiple devices
US11575692B2 (en) 2020-12-04 2023-02-07 Microsoft Technology Licensing, Llc Identity spray attack detection with adaptive classification
US11985241B2 (en) * 2020-12-29 2024-05-14 Visa International Service Association Method and system for token transfer
US12021861B2 (en) * 2021-01-04 2024-06-25 Bank Of America Corporation Identity verification through multisystem cooperation
US11546338B1 (en) 2021-01-05 2023-01-03 Wells Fargo Bank, N.A. Digital account controls portal and protocols for federated and non-federated systems and devices
CN113297552B (zh) * 2021-02-05 2023-11-17 中国银联股份有限公司 基于生物特征id链的验证方法及其验证系统、用户终端
CN113269560A (zh) * 2021-05-14 2021-08-17 河北幸福消费金融股份有限公司 身份验证方法、增强交易安全性的方法和存储介质

Family Cites Families (43)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPH10260939A (ja) * 1997-03-19 1998-09-29 Fujitsu Ltd コンピュータネットワークのクライアントマシン認証方法,クライアントマシン,ホストマシン及びコンピュータシステム
US6510236B1 (en) * 1998-12-11 2003-01-21 International Business Machines Corporation Authentication framework for managing authentication requests from multiple authentication devices
US8060389B2 (en) * 2000-06-07 2011-11-15 Apple Inc. System and method for anonymous location based services
US7181507B1 (en) * 2000-07-18 2007-02-20 Harrow Products Llc Internet based access point management system
US7600128B2 (en) 2001-02-14 2009-10-06 5Th Fleet, Llc Two-factor computer password client device, system, and method
US20020112186A1 (en) * 2001-02-15 2002-08-15 Tobias Ford Authentication and authorization for access to remote production devices
US7373515B2 (en) * 2001-10-09 2008-05-13 Wireless Key Identification Systems, Inc. Multi-factor authentication system
US7225256B2 (en) * 2001-11-30 2007-05-29 Oracle International Corporation Impersonation in an access system
US20030233580A1 (en) * 2002-05-29 2003-12-18 Keeler James D. Authorization and authentication of user access to a distributed network communication system with roaming features
US7322043B2 (en) * 2002-06-20 2008-01-22 Hewlett-Packard Development Company, L.P. Allowing an electronic device accessing a service to be authenticated
US7606560B2 (en) * 2002-08-08 2009-10-20 Fujitsu Limited Authentication services using mobile device
US7574731B2 (en) * 2002-10-08 2009-08-11 Koolspan, Inc. Self-managed network access using localized access management
US7546276B2 (en) * 2006-01-23 2009-06-09 Randle William M Common authentication service for network connected applications, devices, users, and web services
US7703128B2 (en) * 2003-02-13 2010-04-20 Microsoft Corporation Digital identity management
JP2004258847A (ja) * 2003-02-25 2004-09-16 Tech Res & Dev Inst Of Japan Def Agency 端末監視制御装置、端末監視制御方法および端末監視制御プログラム
EP1503352A1 (en) * 2003-07-31 2005-02-02 Matsushita Electric Industrial Co., Ltd. Portable device, IC module, IC card, and method for using services
CN100437551C (zh) * 2003-10-28 2008-11-26 联想(新加坡)私人有限公司 使多个用户设备自动登录的方法和设备
CN101421968B (zh) * 2003-12-23 2011-01-26 万朝维亚有限公司 用于连网计算机应用的鉴权系统
JP4301997B2 (ja) 2004-05-07 2009-07-22 日本電信電話株式会社 携帯電話による情報家電向け認証方法
US7272728B2 (en) * 2004-06-14 2007-09-18 Iovation, Inc. Network security and fraud detection system and method
US7900253B2 (en) * 2005-03-08 2011-03-01 Xceedid Corporation Systems and methods for authorization credential emulation
GB2424726A (en) * 2005-03-31 2006-10-04 Hewlett Packard Development Co Management of computer based assets
US7706778B2 (en) * 2005-04-05 2010-04-27 Assa Abloy Ab System and method for remotely assigning and revoking access credentials using a near field communication equipped mobile phone
US7350074B2 (en) * 2005-04-20 2008-03-25 Microsoft Corporation Peer-to-peer authentication and authorization
US8028329B2 (en) * 2005-06-13 2011-09-27 Iamsecureonline, Inc. Proxy authentication network
JP2007004605A (ja) * 2005-06-24 2007-01-11 Brother Ind Ltd 通信システム、クライアント、サーバおよびプログラム
US7748031B2 (en) * 2005-07-08 2010-06-29 Sandisk Corporation Mass storage device with automated credentials loading
US20070192601A1 (en) * 2005-08-03 2007-08-16 Spain John D System and method for user identification and authentication
US20070056022A1 (en) * 2005-08-03 2007-03-08 Aladdin Knowledge Systems Ltd. Two-factor authentication employing a user's IP address
US20070107050A1 (en) * 2005-11-07 2007-05-10 Jexp, Inc. Simple two-factor authentication
US20070136471A1 (en) * 2005-12-12 2007-06-14 Ip3 Networks Systems and methods for negotiating and enforcing access to network resources
US20070136472A1 (en) * 2005-12-12 2007-06-14 Ip3 Networks Systems and methods for requesting protocol in a network using natural language messaging
EP1997066A4 (en) * 2006-02-06 2011-05-25 Yt Acquisition Corp METHOD AND SYSTEM FOR PROVIDING ONLINE AUTHENTICATION USING BIOMETRIC DATA
US20070220594A1 (en) * 2006-03-04 2007-09-20 Tulsyan Surendra K Software based Dynamic Key Generator for Multifactor Authentication
US7552467B2 (en) * 2006-04-24 2009-06-23 Jeffrey Dean Lindsay Security systems for protecting an asset
US8458775B2 (en) * 2006-08-11 2013-06-04 Microsoft Corporation Multiuser web service sign-in client side components
US7983249B2 (en) * 2007-01-23 2011-07-19 Oracle America, Inc. Enterprise web service data to mobile device synchronization
US8856890B2 (en) * 2007-02-09 2014-10-07 Alcatel Lucent System and method of network access security policy management by user and device
EP2201543A1 (en) * 2007-09-21 2010-06-30 Wireless Dynamics, Inc. Wireless smart card and integrated personal area network, near field communication and contactless payment system
US8966594B2 (en) * 2008-02-04 2015-02-24 Red Hat, Inc. Proxy authentication
US20090228962A1 (en) * 2008-03-06 2009-09-10 Sharp Laboratories Of America, Inc. Access control and access tracking for remote front panel
US9705878B2 (en) * 2008-04-04 2017-07-11 International Business Machines Corporation Handling expired passwords
US20100192170A1 (en) * 2009-01-28 2010-07-29 Gregory G. Raleigh Device assisted service profile management with user preference, adaptive policy, network neutrality, and user privacy

Similar Documents

Publication Publication Date Title
JP2011522327A5 (ja)
US10127377B2 (en) Mobile credential revocation
KR102307665B1 (ko) 신원 인증
US10719602B2 (en) Method and device for realizing session identifier synchronization
JP7060362B2 (ja) 電子デバイスのためのイベント証明書
US10333711B2 (en) Controlling access to protected objects
EP3123692B1 (en) Techniques to operate a service with machine generated authentication tokens
US20080065895A1 (en) Method and System for Implementing Authentication on Information Security
JP2010525448A5 (ja)
WO2019153461A1 (zh) 身份信息更改方法、装置、终端设备及存储介质
TW201439809A (zh) 人機識別方法、網路服務進接方法及相應的設備
US8631486B1 (en) Adaptive identity classification
US8504824B1 (en) One-time rotating key for third-party authentication
WO2013000439A1 (zh) 安全策略脚本执行方法、装置以及安全策略系统
US20170201528A1 (en) Method for providing trusted service based on secure area and apparatus using the same
CN115795428B (zh) 一种自动驾驶数据的安全读取认证方法、系统和电子设备
JP4213411B2 (ja) 本人認証システム、本人認証方法及びその方法をコンピュータに実行させるプログラム
WO2013135171A1 (zh) 一种身份认证方法、装置及系统
CN106295384B (zh) 一种大数据平台访问控制方法、装置和认证服务器
EP3036674B1 (en) Proof of possession for web browser cookie based security tokens
CN103107884B (zh) 一种基于金融自助设备的认证方法及装置
CN115600248B (zh) 基于关键信息隐藏的数据隐私保护认证方法、装置及系统
TWI746504B (zh) 實現會話標識同步的方法及裝置
CN106992976B (zh) 网络安全管理方法及服务器
WO2017054517A1 (zh) 控制设备接入的方法、装置、接入网络的方法和电子设备