IP Library Granted Patent US 7,707,626
Granted Patent B2
US 7,707,626 · App. 11/141,862 · Granted Apr 27, 2010

Authentication management platform for managed security service providers

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,707,626
App. No.
11/141,862
Granted
Apr 27, 2010
Kind
B2
Abstract

An authentication management platform that enables authentication systems from various vendors to be integrated into a single service offering. The disclosed arrangement can support multiple, distinct customers and multiple primary authentication servers on a single platform. The management platform provides access only to users that enter a valid passcode comprising both: (1) a personal identification number (PIN) and (2) the current code generated by a security token card assigned to that user. The authentication management platform may be configured to be controlled and maintained by the subscriber to the system, or may be serviced/maintained by a third party service provider.

Claims (17)

1. A method of authenticating a user to a plurality of disparate network elements and network systems having unique validation arrangements using a single authentication procedure, the method comprising:

maintaining a centralized database of a plurality of authenticated users and associated user IDs/personal identification numbers (PINs) for the plurality of disparate network elements and network systems in a provisioning server;

providing a token code generation unit within the provisioning server;

distributing a separate security token card to each authenticated user; and

re-synchronizing a distributed security token card with the token code generation unit upon receiving a predetermined number of invalid entry attempts at the centralized database.

2. The method as defined in claim 1 wherein the method further includes:

an authenticated user activating his associated security token card with an entry of a valid user ID/PIN and a valid, current token security code, where said authenticated user is provided with an access to the plurality of disparate network elements and network systems in the single authentication procedure.

3. The method as defined by claim 1 wherein a third party vendor maintains the centralized database and distributes the security token cards to said plurality of authenticated users.

4. The method as defined by claim 1 wherein a corporate system subscriber maintains the centralized database and distributes the security token cards to said plurality of authenticated users.

5. The method as defined by claim 1 wherein the maintaining said centralized database of said plurality of authenticated users includes adding new users to said centralized database.

6. The method as defined in claim 1 wherein the distributing said security token cards comprises delivering said security token cards to said plurality of authenticated users utilizing an outside delivery system.

7. An authentication management platform for authenticating a user to a plurality of disparate network elements and network systems using a single authentication procedure, the authentication management platform comprising:

a centralized database of user IDs/personal identification numbers (PINs) associated with a plurality of authenticated users permitted access to the plurality of disparate network elements and network systems; and

a token code generator for interacting with a plurality of synchronized security token cards in possession of said plurality of authenticated users, the token code generator for providing a unique password for a one-time login attempt, with new passwords being generated at predetermined intervals, wherein in order to access the plurality of disparate network elements and network systems, a potential user accesses the authentication management platform and provides a user ID/PIN and a current value of his security token card;

wherein said authentication management platform is configured to re-synchronize a security token card with the token code generator upon receiving a predetermined number of invalid entry attempts at the centralized database.

8. The authentication management platform as defined in claim 7 wherein the authentication management platform resides at a location of a subscriber and is maintained by the subscriber.

9. The authentication management platform as defined in claim 7 wherein the authentication management platform resides at a network location and is maintained by a third party.

Assignments (6)
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT NUMBERS 10342096;10671117; 10716375; 10716376;10795407;10795408; AND 10827591 PREVIOUSLY RECORDED AT REEL: 58314 FRAME: 657. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Feb 29, 2024
From: RAKUTEN, INC.
To: RAKUTEN GROUP, INC.
Reel/Frame 068066/0103 →
CHANGE OF NAME Recorded Dec 6, 2021
From: RAKUTEN, INC.
To: RAKUTEN GROUP, INC.
Reel/Frame 058314/0657 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 7, 2021
From: AT&T INTELLECTUAL PROPERTY II, L.P.
To: RAKUTEN, INC.
Reel/Frame 055542/0873 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 22, 2017
From: AT&T PROPERTIES, LLC
To: AT&T INTELLECTUAL PROPERTY II, L.P.
Reel/Frame 044200/0303 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 21, 2017
From: AT&T CORP.
To: AT&T PROPERTIES, LLC
Reel/Frame 044190/0824 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 1, 2005
From: LUIS F. ALBISU; FURST, CHERYL L.; HOLLOWAY, JAMES W.; HURR, TIEN Y.; WALLACE, MICHAEL F.; DRAKE II, ALTON W.
To: AT&T CORP.
Reel/Frame 016647/0757 →