IP Library Granted Patent US 8,171,288
Granted Patent B2
US 8,171,288 · App. 11/199,432 · Granted May 1, 2012

System and method for authenticating users in a computer network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,171,288
App. No.
11/199,432
Granted
May 1, 2012
Kind
B2
Abstract

A rule based biometric user authentication method and system in a computer network environment is provided. Multiple authentication rules can exist in the computer network. For example, there may be a default system-wide rule, and a rule associated with a particular user trying to log in. There may be other rules such as one associated with a remote computer from which the user is logging in, one associated with a group to which the user belongs, or one associated with a system resource to which the user requires access such as an application program or a database of confidential information. An order of precedence among the rules is then established which is used to authenticate the user.

Claims (16)

1. A computer-implemented method of controlling access to a computer resource in a computer environment, comprising:

assigning by an authentication server a first order of precedence as between at least first and second authentication rules for a first set of conditions pertaining to a user desiring access the resource;

assigning by the authentication server a second order of precedence as between at least the first and second authentication rules for a second set of conditions pertaining to the user desiring access the resource;

based on the presence of the first or second set of conditions, assigning-one of the first order of precedence and second order of precedence to the first authentication rule and assigning the other of the first order of precedence and second order of precedence to the second authentication rule; and

enabling the user to attempt authentication to the authentication server in accordance with at least one of the authentication rules applied in the assigned orders of precedence, and accordingly access to the resource if the conditions of at least one of the authentication rules is satisfied.

2. The method of claim 1 , further comprising identifying at least the first and second set of conditions.

3. The method of claim 1 , further comprising determining by which of the at least first and second authentication rules the user should be authenticated.

4. The method of claim 1 , further comprising setting at least the first order of precedence as between the first and second authentication rules.

5. A computer-implemented method of controlling access to a computer resource in a computer environment, comprising:

assigning by an authentication server a first order of precedence as between a first plurality of authentication rules for a first set of conditions pertaining to a user desiring access the resource;

assigning by the authentication server a second order of precedence as between a second plurality of authentication rules for a second set of conditions pertaining to the user desiring access to the resource;

based on the presence of the first or second set of conditions, assigning one of the first order of precedence and second order of precedence to the first plurality of authentication rules and assigning the other of the first order of precedence and second order of precedence to the second plurality of authentication rules; and

enabling the user to attempt authentication to the authentication server in accordance with at least one of the pluralities of authentication rules applied in the assigned orders of precedence, and accordingly access to the resource if the conditions of at least one of the pluralities of authentication rules is satisfied.

6. The method of claim 5 , wherein enabling the user to attempt access further comprises enabling the attempt wherein the first and second pluralities include different numbers of authentication rules.

7. The method of claim 5 , wherein enabling the user to attempt access further comprises enabling the attempt wherein the first and second pluralities include the same number of authentication rules.

8. The method of claim 5 , wherein enabling the user to attempt access further comprises enabling the attempt wherein the first and second pluralities include dissimilar authentication rules.

Assignments (11)
RELEASE OF SECURITY INTEREST IN INTELLECTUAL PROPERTY COLLATERAL AT REEL/FRAME NO. 59644/0097 Recorded Sep 18, 2024
From: BLUE OWL CAPITAL CORPORATION (FORMERLY KNOWN AS OWL ROCK CAPITAL CORPORATION), AS COLLATERAL AGENT
To: IMPRIVATA, INC.
Reel/Frame 068981/0732 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Apr 8, 2022
From: IMPRIVATA, INC.
To: OWL ROCK CAPITAL CORPORATION, AS COLLATERAL AGENT
Reel/Frame 059644/0097 →
SECURITY INTEREST Recorded Dec 22, 2020
From: IMPRIVATA, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 054836/0937 →
RELEASE OF SECURITY INTEREST Recorded Dec 2, 2020
From: GOLUB CAPITAL MARKETS LLC
To: IMPRIVATA, INC
Reel/Frame 054510/0572 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Oct 25, 2017
From: SILICON VALLEY BANK, AS AGENT
To: IMPRIVATA, INC.
Reel/Frame 044293/0295 →
SECURITY INTEREST Recorded Oct 24, 2017
From: IMPRIVATA, INC.
To: GOLUB CAPITAL MARKETS LLC
Reel/Frame 043934/0875 →
PATENT SECURITY AGREEMENT Recorded Sep 19, 2016
From: IMPRIVATA, INC.
To: SILICON VALLEY BANK
Reel/Frame 040069/0102 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 5, 2009
From: BROWN, TIMOTHY J.; RIVERS, RODNEY; NELSON, DAN
To: THE NATIONAL REGISTRY, INC.
Reel/Frame 022787/0212 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 5, 2009
From: JENSEN, GREGORY C.
To: SAFLINK CORPORATION
Reel/Frame 022787/0236 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 1, 2009
From: IDENTIPHI, INC.
To: IMPRIVATA, INC.
Reel/Frame 022757/0727 →
MERGER Recorded Jun 1, 2009
From: SAFLINK CORPORATION
To: IDENTIPHI, INC.
Reel/Frame 022761/0684 →