IP Library Granted Patent US 8,656,466
Granted Patent B2
US 8,656,466 · App. 12/826,090 · Granted Feb 18, 2014

Data processing with a posteriori or a priori authentication

Inventors: Michel Giordani (Grenoble, FR); Yoann Rigolle (Meylan, FR); Guillaume Garnier De Falletans (Seyssins, FR)
Assignee: France Telecom
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,656,466
App. No.
12/826,090
Granted
Feb 18, 2014
Kind
B2
Abstract

A method and apparatus are provided for processing data. The method includes a step of receiving, during a first communication session established with said server, a request formulated by a first user defining at least one processing operation to be executed on first data, and a step of executing said processing operation on said first data, during a second communication session established with said server after said first session for a second user. The step of executing is applied on condition that the second user has been authenticated via a strong authentication method during the second session and that a relationship between the first and second users has been verified.

Claims (29)

1. A data processing method applied by a server, comprising:

a step of receiving, during a first communication session established with said server, a request formulated by a first user defining at least one processing operation to be executed on first data; and

a step of executing said processing operation on said first data, during a second communication session established with said server for a second user, in which the second user confirms the processing operation requested by the first user, the second communication session being established after interruption of said first communication session, wherein said step of executing is applied on condition that the second user has been authenticated via a strong authentication method during the second communication session and that a relationship between the first and second users has been verified.

2. The method according to claim 1 , in which said relationship is verified if a relationship is verified between a first item of information specific to the first user and a second item of information specific to the second user.

3. The method according to claim 1 , in which said relationship is verified if the second user has delegated entitlements to the first user.

4. The method according to claim 1 , in which said relationship is verified if an identifier of the first user is identical to an identifier of the second user.

5. The method according to claim 2 , in which said first item of information is supplied to said server by the first user, during said first communication session.

6. The method according to claim 2 , in which said second item of information is supplied to said server by the second user during said second communication session.

7. A data processing method applied by a server, comprising:

a step of receiving, during a first communication session established with said server, a request formulated by a first user in order to authorize at least one processing operation to be executed on first data; and

a step of executing said processing operation on said first data, during a second communication session established with said server for a second user, in which the second user confirms the processing operation requested by the first user, the second communication session being established after interruption of said first communication session, said step of executing being applied on condition that the first user has been authenticated by a strong authentication method during the first communication session and that a relationship between the first and second users has been verified.

8. The method according to claim 7 , in which the execution step is applied if a condition formulated by the first user during the first communication session is verified at the time of said execution.

9. The method according to claim 7 , in which said relationship is verified if a relationship is verified between a first item of information specific to the first user and a second item of information specific to the second user.

10. The method according to claim 7 , in which said relationship is verified if the second user has delegated entitlements to the first user.

11. The method according to claim 7 , in which said relationship is verified if an identifier of the first user is identical to an identifier of the second user.

12. The method according to claim 9 , in which said first item of information is supplied to said server by the first user, during said first communication session.

13. The method according to claim 9 , in which said second item of information is supplied to said server by the second user during said second communication session.

14. A non-transitory recording medium that can be read by a data processor, on which a program is recorded comprising program code instructions for performing a method when executed by the data processor, the method comprising:

a step of receiving, during a first communication session established with a server, a request formulated by a first user defining at least one processing operation to be executed on first data; and

a step of executing said processing operation on said first data, during a second communication session established with said server for a second user, in which the second user confirms the processing operation requested by the first user, the second communication session being established after interruption of said first communication session, wherein said step of executing is applied on condition that the second user has been authenticated via a strong authentication method during the second communication session and that a relationship between the first and second users has been verified.

15. A non-transitory recording medium that can be read by a data processor, on which a program is recorded comprising program code instructions for performing a method when executed by the data processor, the method comprising:

a step of receiving, during a first communication session established with a server, a request formulated by a first user in order to authorize at least one processing operation to be executed on first data; and

a step of executing said processing operation on said first data, during a second communication session established with said server for a second user, in which the second user confirms the processing operation requested by the first user, the second communication session being established after interruption of said first communication session, said step of executing being applied on condition that the first user has been authenticated by a strong authentication method during the first communication session and that a relationship between the first and second users has been verified.

16. A data processing device, comprising

means for receiving, during a first established communication session, a request formulated by a first user defining at least one processing operation to be executed on first data; and

means for executing said processing operation on said first data, during a second communication session established with a server for a second user, in which the second user confirms the processing operation requested by the first user, the second communication session being established after interruption of said first communication session, said execution means being enabled on condition that the second user has been authenticated via a strong authentication method during the second communication session and that a relationship between the first and second users has been verified.

17. A data processing device, comprising

means for receiving, during a first communication session established with a server, a request formulated by a first user to authorize at least one processing operation to be executed on first data; and

means for executing said processing operation on said first data during a second communication session established with said server for a second user, in which the second user confirms the processing operation requested by the first user, the second communication session being established after interruption of said first communication session, said execution means being enabled on condition that the first user has been authenticated by a strong authentication method during the first communication session and that a relationship between the first and second users has been verified.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 15, 2010
From: GIORDANI, MICHEL; RIGOLLE, YOANN; GARNIER DE FALLETANS, GUILLAUME
To: FRANCE TELECOM
Reel/Frame 024994/0220 →
Priority Claims (1)
FR 09 54433 · Jun 29, 2009 · national
Continuity (1)
Related Publication 20110004925A1 · Jan 6, 2011