IP Library Granted Patent US 8,677,138
Granted Patent B2
US 8,677,138 · App. 12/885,232 · Granted Mar 18, 2014

System and method of secure authentication information distribution

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,677,138
App. No.
12/885,232
Granted
Mar 18, 2014
Kind
B2
Abstract

A system and method of distributing authentication information for remotely accessing a computer resource. A request for authentication information, including identity information, is received from a user of a remote device. When the user is authenticated based on the identity information, requested authentication information is retrieved and returned to the remote device. The authentication information, or information generated from the authentication information, is then used for remotely accessing the computer resource.

Claims (29)

1. A communications device comprising:

a processor configured to transmit a seed request to a network device, the seed request including an access code, identity information corresponding to a particular seed associated with a user, user authentication information, and a digital signature, wherein the access code is configured to match a second access code calculable using the particular seed,

wherein the processor is further configured to receive the particular seed from the network device and use the particular seed to access a network.

2. The communications device of claim 1 , wherein the seed request comprises a Hypertext Transfer Protocol (HTTP) connection request.

3. The communications device of claim 1 , wherein the identity information comprises user information and account information.

4. The communications device of claim 1 , wherein the identity information is used by the communications device for two-factor authentication.

5. The communications device of claim 4 , wherein the identity information comprises a network password entered by the user of the communications device and wherein the digital signature is generated based on a transformation of at least a portion of the information in the seed request, a signature key, and a signature algorithm.

6. The communications device of claim 1 , wherein the communications device uses the retrieved seed to gain access to a corporate local area network (LAN).

7. The communications device of claim 1 , wherein the remote device comprises a wireless mobile communication device.

8. A network device comprising a processor configured to:

receive authentication information comprising a first access code and identity information corresponding to a particular seed associated with a user;

authenticate the received authentication information;

retrieve the particular seed corresponding to the user associated with the first access code after authenticating the received authentication information;

generate a second access code using the particular seed;

compare the first access code and the second access code; and

responsive to the first and second access codes matching, cause the particular seed to be transmitted to a remote device, wherein the particular seed is configured to allow the remote device to access a network.

9. The network device of claim 8 wherein the network is a wireless communications network.

10. A method implemented in a communications device comprising a processor, the method comprising:

transmitting a seed request, the seed request including an access code, identity information corresponding to a particular seed associated with a user, user authentication information, and a digital signature, wherein the access code is configured to match a second access code calculable using the particular seed,

receiving the particular seed; and

using the particular seed to access a network.

11. A method implemented in a network device comprising a processor, the method comprising:

receiving authentication information comprising a first access code and identity information corresponding to a particular seed associated with a user;

authenticating the authentication information;

retrieving the particular seed corresponding to the user associated with the first access code when the authentication information is authenticated;

generating a second access code using the particular seed;

comparing the first access code and the second access code; and

responsive to the first and second access codes matching, transmitting the particular seed to a remote device, wherein the particular seed is configured to allow the remote device to access a network.

12. The method of claim 11 wherein the network is a wireless communications network.

Assignments (5)
CORRECTIVE ASSIGNMENT TO CORRECT THE ADDED PATENT NUMBER TO REMOVE PATENT NO. 8,873,407 AT PREVIOUSLY RECORDED ON REEL 64066 FRAME 1. ASSIGNOR(S) HEREBY CONFIRMS THE NUNC PRO TUNC ASSIGNMENT EFFECTIVE DATE MARCH 20, 2023. Recorded Feb 2, 2026
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 074921/0001 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 19, 2023
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064066/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 16, 2023
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064104/0103 →
CHANGE OF NAME Recorded Jan 23, 2014
From: RESEARCH IN MOTION LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 032124/0009 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 14, 2013
From: LITTLE, HERBERT A.; KIRKUP, MICHAEL G.; ROBERTSON, IAN M.
To: RESEARCH IN MOTION LIMITED
Reel/Frame 030616/0182 →