IP Library Granted Patent US 9,009,793
Granted Patent B2
US 9,009,793 · App. 13/179,599 · Granted Apr 14, 2015

Dynamic pin dual factor authentication using mobile device

Inventors: Sachin Prakash Sancheti (Maharashtra, IN); Sidharth Subhash Ghag (Maharashtra, IN)
Assignee: Infosys Limited
G06F21/445H04L9/3215H04L9/3226H04L9/3234H04L2209/80
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,009,793
App. No.
13/179,599
Granted
Apr 14, 2015
Kind
B2
Abstract

The present invention provides cost efficient two way authentication method in which the authentication module can be provided as a Plug and Play (PnP) architecture enabling dual layer security with reduced cost where the actions are initiated by a server and user input is received through an audio session for added security. The second level authentication can be carried out with mobile as client device making it cost efficient. The invention can be hosted as an independent service or can be integrated with existing authentication mechanisms, making it elegant for usage.

Claims (81)

1. A computer-implemented method of authenticating a user for usage of a portal at a user terminal, the method comprising steps of:

obtaining at least one credential inputted by the user through the portal, the portal being accessed by the user via the user terminal;

validating the user based on the obtained at least one credential;

displaying, a code at the portal accessed by the user via the user terminal, wherein the code is generated by a server of the portal;

transmitting, by the server, one or more user details and the generated code to an authentication module, wherein the authentication module is maintained as a separate entity that is independent of the server of the portal;

initiating establishment, by the authentication module in communication with the server, of an audio session with the user at a registered device of the user, wherein the registered device is different from the user terminal;

checking, by the authentication module, the establishment of the audio session at the registered device and invalidating the authentication of the user on failing to establish the audio session;

receiving, by the authentication module, the code from the user through the registered device if the audio session is established with the user;

comparing, by the authentication module, the code received from the user via the registered device during the established audio session with the generated code received from the server of the portal; and

authenticating the user for usage of the portal at the user terminal based on the comparison.

2. The method of claim 1 , wherein the credential comprises at least one of a username and a password.

3. The method of claim 1 , wherein the code is at least one of a group containing password, security answer, CAPTCHA, and any identification number.

4. The method of claim 1 , wherein the portal can be used for at least one of authenticating a user login, transaction, user profile change, and application access.

5. The method of claim 1 , wherein the code generated can be at least one of a preset password, random characters generated at run time, and other user information.

6. A computer-implemented method of authenticating a user for usage of a portal at a user terminal, the method comprising steps of:

obtaining at least one credential inputted by the user through the portal, the portal being accessed by the user via the user terminal;

validating the user based on the obtained at least one credential;

displaying, a code at a computing interface accessed by the user via the user terminal, wherein the code is generated by a server of the portal;

transmitting, by the server, one or more user details and the generated code to an authentication module, wherein the authentication module is maintained as a separate entity that is independent of the server of the portal;

initiating establishment, by the authentication module in communication with the server, of an audio session with the user at a registered device of the user, wherein the registered device is different from the user terminal;

checking, by the authentication module, the establishment of the audio session at the registered device and invalidating the authentication of the user on failing to establish the audio session;

receiving, by the authentication module, the code from the user through the registered device if the audio session is established with the user;

comparing, by the authentication module, the code received from the user via the registered device during the established audio session with the generated code received from the server of the portal; and

authenticating the user for usage of the portal at the user terminal based on the comparison.

7. A computer-implemented method of authenticating a user for usage of a portal at a user terminal, the method comprising steps of:

obtaining at least one credential inputted by the user through the portal, the portal being accessed by the user via the user terminal;

displaying, a code at the portal accessed by the user via the user terminal, wherein the code is generated by a server of the portal;

transmitting, by the server, one or more user details and the generated code to an authentication module, wherein the authentication module is maintained as a separate entity that is independent of the server of the portal;

initiating establishment, by the authentication module in communication with the server, of an audio session with the user at a registered device of the user, wherein the registered device is different from the user terminal;

checking, by the authentication module, the establishment of the audio session at the registered device and invalidating the authentication of the user on failing to establish the audio session;

receiving, by the authentication module, the code from the user through the registered device if the audio session is established with the user;

comparing, by the authentication module, the code received from the user via the registered device during the established audio session with the generated code received from the server of the portal; and

authenticating the user for usage of the portal at the user terminal based on the comparison.

8. The method of claim 7 , wherein the credential comprises at least one of a username and a password.

9. The method of claim 7 , wherein the code is at least one of a group containing password, security answer, CAPTCHA, and any identification number.

10. The method of claim 7 , wherein the portal can be used for at least one of authenticating a user login, transaction, user profile change, and application access.

11. The method of claim 7 , wherein the code generated can be at least one of a preset password, random characters generated at run time, and other user information.

12. A computer-implemented method of authenticating a user for usage of a portal at a user terminal, the method comprising steps of:

obtaining at least one credential inputted by the user through the portal, the portal being accessed by the user via the user terminal;

displaying, a code at a computing interface accessed by the user via the user terminal, wherein the code is generated by a server of the portal;

transmitting, by the server, one or more user details and the generated code to an authentication module, wherein the authentication module is maintained as a separate entity that is independent of the server of the portal;

initiating establishment, by the authentication module in communication with the server, of an audio session with the user at a registered device of the user, wherein the registered device is different from the user terminal;

checking, by the authentication module, the establishment of the audio session at the registered device and invalidating, by the authentication module, the authentication of the user on failing to establish the audio session;

receiving, by the authentication module, the code from the user through the registered device if the audio session is established with the user;

comparing, by the authentication module, the code received from the user via the registered device during the established audio session with the generated code received from the server of the portal; and

authenticating the user for usage of the portal at the user terminal based on the comparison.

13. A system for authenticating a user for usage of a portal at a user terminal, the system comprising:

a memory comprising program instructions;

a processor configured to execute the program instructions stored in the memory;

an user interface in communication with the processor and configured to receive at least one user credential, the user interface being accessed by the user via the user terminal;

a server of the portal in communication with the processor and configured to:

display a code at the user interface on receiving the user credentials; and

transmit one or more user details and the generated code to an authentication module, wherein the authentication module is maintained as a separate entity that is independent of the server of the portal;

the authentication module, in communication with the processor and configured to:

initiate establishment of an audio session with a registered user device based on the at least one user credential received from the server, wherein the registered user device is different from the user terminal;

check the establishment of the audio session at the registered device and invalidate the authentication of the user on failing to establish the audio session;

receive the code from the user through the registered device if the audio session is established with the user;

compare the code received from the user via the registered device during the established audio session with the generated code received from the server of the portal; and

authenticate the user for usage of the portal at the user terminal based on the comparison.

14. A system of claim 13 , wherein the registered device is at least one of a laptop, a desktop computer, a wireless device, a wireless email device, an integrated device, a mobile phone and a personal digital assistant (PDA).

15. A system of claim 13 , where in the audio session comprises at least one of audio input, audio output, and audio interaction.

16. A system of claim 13 , where in the network can be one of private, public and hybrid.

17. A non-transitory computer usable medium having a computer readable program code embodied therein for authenticating a user for usage of a portal at a user terminal comprising a program code adapted for:

obtaining at least one credential inputted by the user through the portal, the portal being accessed by the user via the user terminal;

validating the user based on the obtained at least one credential;

displaying, a code at the portal accessed by the user via the user terminal, wherein the code is generated by a server of the portal;

transmitting, by the server, one or more user details and the generated code to an authentication module, wherein the authentication module is maintained as a separate entity that is independent of the server of the portal;

initiating establishment, by the authentication module in communication with the server, of an audio session with the user at a registered device of the user, wherein the registered device is different from the user terminal;

checking, by the authentication module, the establishment of the audio session at the registered device and invalidating the authentication of the user on failing to establish the audio session;

receiving the code from the user through the registered device if the audio session is established with the user;

comparing, by the authentication module, the code received from the user via the registered device during the established audio session with the generated code received from the server of the portal; and

authenticating the user for usage of the portal at the user terminal based on the comparison.

18. A non-transitory computer usable medium having a computer readable program code embodied therein for authenticating a user for usage of a portal at a user terminal comprising a program code adapted for:

obtaining at least one credential inputted by the user through the portal, the portal being accessed by the user via the user terminal;

displaying, a code at the portal accessed by the user via the user terminal, wherein the code is generated by a server of the portal;

transmitting, by the server, one or more user details and the generated code to an authentication module, wherein the authentication module is maintained as a separate entity that is independent of the server of the portal;

initiating establishment, by the authentication module in communication with the server, of an audio session with the user at a registered device of the user, wherein the registered device is different from the user terminal;

checking, by the authentication module, the establishment of the audio session at the registered device and invalidating the authentication of the user on failing to establish the audio session;

receiving, by the authentication module, the code from the user through the registered device if the audio session is established with the user;

comparing, by the authentication module, the code received from the user via the registered device during the established audio session with the generated code received from the server of the portal; and

authenticating the user for usage of the portal at the user terminal based on the comparison.

Assignments (2)
CHANGE OF NAME Recorded Mar 19, 2013
From: INFOSYS TECHNOLOGIES LIMITED
To: INFOSYS LIMITED
Reel/Frame 030039/0819 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 21, 2011
From: SANCHETI, SACHIN PRAKASH; GHAG, SIDHARTH SUBHASH
To: INFOSYS TECHNOLOGIES LIMITED
Reel/Frame 026941/0164 →
Priority Claims (1)
IN 1071/CHE/2011 · Mar 31, 2011 · national
Continuity (1)
Related Publication 20120254963A1 · Oct 4, 2012