IP Library Granted Patent US 7,810,139
Granted Patent B2
US 7,810,139 · App. 11/392,195 · Granted Oct 5, 2010

Remote authorization for operations

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,810,139
App. No.
11/392,195
Granted
Oct 5, 2010
Kind
B2
Abstract

Techniques for the remote authorization of secure operations are provided. A secure security system restricts access to a secure operation via an access key. An authorization acquisition service obtains the access key on request from the secure security system when an attempt is made to initiate the secure operation. The authorization acquisition service gains access the access key from a secure store via a secret. That is, the secret store is accessible via the secret. The secret is obtained directly or indirectly from a remote authorization principal over a network.

Claims (29)

1. A method, comprising:

receiving a request for authorization to initiate an operation of a security system;

notifying a remote authorization principal of the request, the remote authorization principal is a user who is certified as a crypto officer for the secure system and the remote authorization principal is not physically and not geographically present at the security system when notified and the remote authorization principal is communicated with over a wide-area-network via a phone of the remote authorization principal, the remote authorization principal is notified via a text message to the phone of the request to initiate the operation and at the same time a voice message is sent to the phone of the remote authorization principal, the voice message indicating that the remote authorization principal is to use a random passkey along with credentials of the remote authorization principal to gain access to a random key generator and acquire a secret;

obtaining the secret in response to the notification;

acquiring an access key in response to the secret;

submitting the access key to the security system to initiate the operation;

notifying one or more additional remote authorization principals of the request;

obtaining one or more additional secrets from the one or more additional remote authorization principals;

acquiring one or more additional access keys in response to the one or more additional secrets; and

submitting the one or more additional access keys to the security system to finalize the initiation of the operation.

2. The method of claim 1 , wherein obtaining further includes receiving the secret as the access key.

3. The method of claim 1 , wherein obtaining further includes at least one of:

receiving the secret from a secure World-Wide Web (WWW) service activated by the remote authorization principal;

receiving the secret as touch tone codes from a communication device of the remote authorization principal;

receiving the secret as a text message submitted by the remote authorization principal from the communication device;

receiving the secret as a voice instruction from the remote authorization principal with the communication device; and

receiving the secret from the communication device identified with a unique device identifier upon instruction to do so by the remote authorization principal.

4. The method of claim 1 , wherein obtaining further includes receiving the secret as a randomly and time sensitive secret from the remote authorization principal after the remote authorization principal access at least one of a device and a service to acquire the secret in response to the notification.

5. The method of claim 1 , wherein obtaining one or more additional secrets further include receiving the one or more additional secrets as the acquired one or more additional access keys.

6. A method, comprising:

receiving a request for authorization to initiate an operation of a security system;

notifying a remote authorization principal of the request, the remote authorization principal is a user who is certified as a crypto officer for the secure system and the remote authorization principal is not physically and not geographically present at the security system when notified and the remote authorization principal is communicated with over a wide-area-network via a phone of the remote authorization principal, the remote authorization principal is notified via a text message to the phone of the request to initiate the operation and at the same time a voice message is sent to the phone of the remote authorization principal, the voice message indicating that the remote authorization principal is to use a random passkey along with credentials of the remote authorization principal to gain access to a random key generator and acquire a secret;

obtaining the secret in response to the notification;

acquiring an access key in response to the secret;

submitting the access key to the security system to initiate the operation;

notifying one or more additional remote authorization principals of the request;

obtaining one or more additional secrets from the one or more additional remote authorization principals; and

using the one or more additional secrets as additional information used for purposes of acquiring the access key.

7. The method of claim 6 further comprising, resolving at least one of a notification mechanism and an acquisition access key mechanism in response to one or more policies.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 2, 2012
From: NOVELL, INC.
To: CPTN HOLDINGS LLC
Reel/Frame 027798/0101 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 2, 2012
From: CPTN HOLDINGS LLC
To: ORACLE INTERNATIONAL CORPORATION
Reel/Frame 027798/0152 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 29, 2006
From: CARTER, STEPHEN R.; BURCH, LLOYD LEON
To: NOVELL, INC.
Reel/Frame 017736/0993 →