IP Library Granted Patent US 8,181,015
Granted Patent B2
US 8,181,015 · App. 12/960,326 · Granted May 15, 2012

System and method for establishing historical usage-based hardware trust

Assignee: AOL Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,181,015
App. No.
12/960,326
Granted
May 15, 2012
Kind
B2
Abstract

Establishing trust according to historical usage of selected hardware involves providing a usage history for a selected client device; and extending trust to a selected user based on the user's usage history of the client device. The usage history is embodied as signed statements issued by a third party or an authentication server. The issued statement is stored either on the client device, or on an authentication server. The usage history is updated every time a user is authenticated from the selected client device. By combining the usage history with conventional user authentication, an enhanced trust level is readily established. The enhanced, hardware-based trust provided by logging on from a trusted client may eliminate the necessity of requiring secondary authentication for e-commerce and financial services transactions, and may also be used to facilitate password recovery and conflict resolution in the case of stolen passwords.

Claims (37)

1. A method for establishing trust in relation to a service provider across a network, comprising the steps of:

tracking information unique to each log in for a selected user through one or more access points associated with said network; and

extending an increase in trust to said selected user at a level at least partially based on any of frequency of said tracked log ins or number of said tracked log ins through said access points for said selected user.

2. The method of claim 1 , further comprising the step of:

performing an authentication of said selected user, wherein said authentication is based on a combination of said extended trust and at least one other form of authentication.

3. The method of claim 1 , further comprising the step of:

storing said tracked information at any of a remote location or a selected device of one or more devices that corresponds with one or more of said log ins for said selected user.

4. The method of claim 1 , wherein said step of tracking information further comprises creating a statement by an issuer, downloading said statement from said issuer, and storing said downloaded statement on a selected device of one or more devices that corresponds with one or more of said log ins for said selected user.

5. The method of claim 4 , further comprising the step of:

providing said stored tracked information by said selected device with a request for any of service or access.

6. The method of claim 1 , wherein said step of extending an increase in trust comprises:

determining a level of trust according to said selected user's frequency of use of a selected device of one or more devices that corresponds with one or more of said log ins for said selected user, wherein a frequent user is granted enhanced trust over an infrequent user.

7. The method of claim 1 , further comprising the step of:

establishing a pattern of use based at least on said tracked information for any of said selected user or a selected device of one or more devices that corresponds with one or more of said log ins for said selected user;

wherein said step of extending trust is at least partially based on a level of conformance to said established pattern of use.

8. The method of claim 7 , wherein said tracked information comprises any of where said selected user dials in from, device type, device operating system, any of IP address or subnet, or any of cookies or tags on said selected device.

9. A system for establishing trust across a network, comprising:

a service provider; and

one or more servers associated with said service provider;

wherein at least one of said servers is configured to track information unique to each log in for a selected user through one or more access points associated with said network; and

wherein at least one of said servers is configured to extend an increase in trust to said selected user at a level at least partially based on any of frequency of said log ins or number of said tracked log ins through said access points for said selected user.

10. The system of claim 9 , wherein at least one of said servers is configured to authenticate said selected user, wherein said authentication is based on a combination of said extended trust and at least one other form of authentication.

11. The system of claim 9 , wherein at least one of said servers is configured to store said tracked information at any of a remote location or a selected device of one or more devices that corresponds with one or more of said log ins for said selected user.

12. The system of claim 9 , wherein at least one of said servers is configured to create a statement by corresponding to said tracked information, and store said statement on a selected device of one or more devices that corresponds with one or more of said log ins for said selected user.

13. The system of claim 12 , wherein at least one of said servers is configured to provide said stored tracked information in response to a request for any of service or access.

14. The system of claim 9 , wherein at least one or said servers is configured to determine a level of trust according to said selected user's frequency of use of a selected device of one or more devices that corresponds with one or more of said log ins for said selected user, wherein a frequent user is granted enhanced trust over an infrequent user.

15. A system for establishing trust with a service provider across a network, comprising:

one or more access points; and

one or more servers associated with said service provider;

wherein at least one of said servers is configured to track information unique to each log in for a selected user through one or more of said access points associated with said network; and

wherein at least one of said servers is configured to extend an increase in trust to said selected user at a level at least partially based on any of frequency of said log ins or number of said tracked log ins through said access points for said selected user.

16. The system of claim 15 , wherein at least one of said servers is configured to authenticate said selected user, wherein said authentication is based on a combination of said extended trust and at least one other form of authentication.

17. The system of claim 15 , wherein at least one of said servers is configured to store said tracked information at any of a remote location or a selected device of one or more devices that corresponds with one or more of said log ins for said selected user.

18. The system of claim 15 , wherein at least one or said servers is configured to determine a level of trust according to said selected user's frequency of use of a selected device of one or more devices that corresponds with one or more of said log ins for said selected user, wherein a frequent user is granted enhanced trust over an infrequent user.

19. The system of claim 15 , wherein at least one of said servers is configured to establish or update a pattern of use based at least on said tracked information for any of said selected user or a selected device of one or more devices that corresponds with one or more of said log ins for said selected user;

wherein said extended trust is at least partially based on a level of conformance to said pattern of use.

20. The system of claim 19 , wherein said tracked information comprises any of where said selected user dials in from, device type, device operating system, any of IP address or subnet, or any of cookies or tags on said selected device.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 9, 2014
From: MICROSOFT CORPORATION
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 034544/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 19, 2012
From: AOL INC.
To: MICROSOFT CORPORATION
Reel/Frame 029317/0861 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 16, 2012
From: ROSKIND, JAMES A.
To: AMERICA ONLINE, INC.
Reel/Frame 028219/0078 →
CHANGE OF NAME Recorded May 16, 2012
From: AOL LLC
To: AOL INC.
Reel/Frame 028219/0223 →
CHANGE OF NAME Recorded May 16, 2012
From: AMERICA ONLINE, INC.
To: AOL LLC
Reel/Frame 028222/0324 →
Continuity (4)
Continuation 11615858 · Dec 22, 2006
Continuation 10465163 · Jun 18, 2003
Continuation In Part 10276842
Related Publication 20110078765A1 · Mar 31, 2011