IP Library Granted Patent US 8,683,550
Granted Patent B2
US 8,683,550 · App. 13/152,662 · Granted Mar 25, 2014

System and method for validating a user of an account using a wireless device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,683,550
App. No.
13/152,662
Granted
Mar 25, 2014
Kind
B2
Abstract

The disclosure provides a system and method of authenticating a user to a network. For the method, if a request for a resource initiated by the device is related to a restricted resource, then the method: redirects the request to the authentication server; initiates an authentication process at the server to request a user account and a password from the device to authenticate the device if it has not been authenticated; automatically provides the device with access to the restricted resource if the device previously had been authenticated to access the restricted resource; and provides a signal to the device indicating whether it has been authenticated to allow the device to update its graphical user interface to indicate an access status for the restricted resource. If the request relates to a non-restricted resource, then the method automatically provides the device with access to the non-restricted resource.

Claims (39)

1. A method to control access for a wireless device that is authenticated to communicate via a first network to a restricted resource in a private network by an authentication server, said method comprising:

generating a graphical user interface (GUI) on a display of said wireless device, said GUI providing in one screen a first icon relating to said restricted resource and a second icon relating to an authentication status of said wireless device to said authentication server;

if said first icon is activated, initiating a request to access said restricted resource, and if said wireless device is not authenticated by said authentication server, then:

redirecting said request to said authentication server to initiate an authentication process at said authentication server utilizing a two-factor authentication technique to request a user account and a password from said wireless device to authenticate said wireless device if said wireless device has not been authenticated to access said restricted resource; and

indicating whether said wireless device has been authenticated to access said restricted resource, by updating said first icon to indicate either a locked or unlocked access status for said restricted resource,

wherein

if said first icon is activated and said wireless device is authenticated by said authentication server, said wireless device is automatically provided with access to said restricted resource; and

if said second icon is activated and said wireless device is not authenticated by said authentication server, said authentication process is initiated.

2. The method to control access for a wireless device that is authenticated to communicate with a first network to a restricted resource as claimed in claim 1 , wherein:

said wireless device has an access account to said first network; and

said non-restricted resource relates to a resource accessible from said first network.

3. The method to control access for a wireless device that is authenticated to communicate with a first network to a restricted resource as claimed in claim 1 , wherein said two-factor authentication technique utilizes a validation code provided to said wireless device from a user of said wireless device.

4. The method to control access for a wireless device that is authenticated to communicate with a first network to a restricted resource as claimed in claim 3 , wherein said validation code is provided as part of said password.

5. The method to control access for a wireless device that is authenticated to communicate with a first network to a restricted resource as claimed in claim 4 , further comprising requesting said validation code from said user through said wireless device relating to said two-factor authentication technique when said wireless device is not authenticated after a set number of authentication attempts.

6. The method to control access for a wireless device that is authenticated to communicate with a first network to a restricted resource as claimed in claim 5 , wherein:

said validation code periodically changes in a pattern known by said first network; and

changes in said validation code are provided to said user.

7. The method to control access for a wireless device that is authenticated to communicate with a first network to a restricted resource as claimed in claim 1 , wherein access to said restricted resource is time-limited.

8. A wireless device, comprising:

a microprocessor;

a memory device;

an authentication process to control access for said wireless device that is authenticated to communicate with a first network to a restricted resource in a private network, said authentication process providing coded instructions stored on said memory device to operate on said microprocessor to:

upon activation of an authentication icon relating to an authentication status of said wireless device to said private network in one screen in a graphical user interface (GUI) on a display of said wireless device, where said one screen also contains a resource icon relating to said restricted resource, initiate a request to an authentication server for said private network to utilize a two-factor authentication technique to request a user account and a password from said wireless device to authenticate said wireless device if said wireless device has not been authenticated to access said user account;

a redirection process providing coded instructions stored on said memory device to operate on said microprocessor, said redirection process adapted to:

evaluate an access request initiated by said wireless device received after activation of said resource icon in said GUI to determine if said wireless device has been authenticated by said private network and if not so, said redirection process is adapted to:

redirect said access request to an authentication server for said private network to initiate said authentication process utilizing said two-factor authentication technique if said wireless device has not been authenticated to access said restricted resource;

an access process providing coded instructions stored on said memory device to operate on said microprocessor, said access process adapted to automatically provide said wireless device with access to said restricted resource if said wireless device has been authenticated by said authentication process; and

an indicator process providing coded instructions stored on said memory device to operate on said microprocessor to indicate whether said wireless device has been authenticated to access said restricted resource, so that said GUI is updated to indicate either a locked or unlocked access status for said restricted resource.

9. The wireless device as claimed in claim 8 , wherein:

said restricted resource relates to a HTML page and is provided through an internet point-to-point protocol layer; and

said restricted resource is provided in said internet point-to-point protocol layer by said private network.

10. The wireless device as claimed in claim 8 , wherein said two-factor authentication technique utilizes a validation code provided to said wireless device.

11. The wireless device as claimed in claim 8 , wherein a validation code is provided as part of said password.

12. The wireless device as claimed in claim 11 , wherein said authentication process is further adapted to request a validation code from said wireless device relating to said two-factor authentication technique when said wireless device has not been authenticated after a set number of authentication attempts.

13. The wireless device as claimed in claim 12 , wherein said authentication server periodically changes said validation code in a pattern known by said first network and provides said changes in said validation code to said wireless device.

14. The wireless device as claimed in claim 8 , wherein access to said restricted resource is time-limited.

15. The wireless device as claimed in claim 8 , wherein said private network includes a mobile data services server.

16. The method to control access for a wireless device that is authenticated to communicate with a first network to a restricted resource as claimed in claim 1 , wherein status information for said authentication process is provided to said wireless device to allow said wireless device to generate status information in said GUI.

17. The method to control access for a wireless device that is authenticated to communicate with a first network to a restricted resource as claimed in claim wherein said one screen is a main application GUI for said wireless device.

Assignments (4)
NUNC PRO TUNC ASSIGNMENT Recorded Jun 19, 2023
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064269/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 16, 2023
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064104/0103 →
CHANGE OF NAME Recorded Jan 15, 2014
From: RESEARCH IN MOTION LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 032035/0883 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 3, 2011
From: HUNG, MICHAEL, MR.
To: RESEARCH IN MOTION LIMITED
Reel/Frame 026386/0617 →