IP Library Granted Patent US 8,127,141
Granted Patent B2
US 8,127,141 · App. 10/493,596 · Granted Feb 28, 2012

Method and apparatus for selecting a password

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,127,141
App. No.
10/493,596
Granted
Feb 28, 2012
Kind
B2
Abstract

A method of generating or entering a password or passphrase on a computer system 1 . The method comprises storing a plurality of sets of values in a memory 5 of the system 1 , the values of each set defining respective elements which belong to a common domain, the domains of respective sets being distinct from one another, selecting at least one value from each stored set or from each of a plurality of the stored sets, and combining the selected values or elements thereof to form a password or passphrase.

Claims (22)

1. A method of securing data stored on a computer system, the method comprising:

generating a password comprising a plurality of values;

securing data stored on the system using said password;

implementing a two level authorisation procedure to enable user access to said secured data, a first authorisation level requiring user input into the system of only a subset of values selected from said plurality of values and a second level requiring user input of the entire password; and

wherein if a mistaken entry is made in the first level authorisation, a second level authorisation is implemented, and

wherein each time said first level authorisation is implemented, the input of a subset of values reselected from said plurality of values that differs from that subset selected for the preceding implementation is required.

2. A method according to claim 1 , wherein the subset of values required for each implementation of the first authorisation level is selected from the complete set of values on a round robin basis.

3. A method according to claim 1 , wherein said step of generating a password comprises selecting a value from each of a plurality of value categories, each value category comprising a multiplicity of values.

4. A method according to claim 3 , wherein, when said first authentication level is implemented, an icon grid is displayed for the value category corresponding to each value of the chosen subset of values, the user selecting a value from each icon grid.

5. A method according to claim 4 , wherein each icon grid displays icons corresponding to a subset of the values contained in a value category.

6. A method according to claim 3 , wherein, when said second authorisation level is implemented, a textual list of the values contained in a value category is displayed for each category, and the user selects a value from each list.

7. A computer system comprising:

first processing means for generating a password comprising a plurality of values and for securing data stored on the system using said password; and

second processing means implementing a two level authorisation procedure to enable user access to said secured data, a first authorisation level requiring user input into the system of only a subset of values selected from said plurality of values and a second level requiring user input of the entire password,

wherein if a mistaken entry is made in the first level authorisation, a second level authorisation is implemented, and

wherein each time said first level authorisation is implemented it requires the input of a subset of values reselected from said plurality of values that differs from that subset selected for the preceding implementation.

8. A computer storage medium having stored thereon a computer program for causing a computer system to:

generate a password comprising a plurality of values;

secure data stored on the system using said password; and

implement a two level authorisation procedure to enable user access to said secured data, a first authorisation level requiring user input into the system of only a subset of values selected from said plurality of values and a second level requiring user input of the entire password,

wherein if a mistaken entry is made in the first level authorisation, a second level authorisation is implemented, and

wherein each time said first level authorisation is implemented, the input of a subset of values reselected from said plurality of values that differs from that subset selected for the preceding implementation is requried.

Assignments (4)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE NATURE OF THE CONVEYENCE IS AN ASSIGNMENT, NOT A CHANGE OF NAME PREVIOUSLY RECORDED AT REEL: 061221 FRAME: 0763. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Nov 30, 2023
From: WITHSECURE CORPORATION (A/K/A WITHSECURE OYJ)
To: F-SECURE CORPORATION
Reel/Frame 065988/0518 →
CHANGE OF NAME Recorded Sep 27, 2022
From: WITHSECURE CORPORATION (A/K/A WITHSECURE OYJ)
To: F-SECURE CORPORATION
Reel/Frame 061221/0763 →
CHANGE OF NAME Recorded Jun 7, 2022
From: F-SECURE CORPORATION (A/K/A F-SECURE CORPORATION OYJ)
To: WITHSECURE CORPORATION (A/K/A WITHSECURE OYJ)
Reel/Frame 060301/0770 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 19, 2004
From: HYPPONEN, ARI
To: F-SECURE OYJ
Reel/Frame 015943/0290 →