IP Library Granted Patent US 8,943,320
Granted Patent B2
US 8,943,320 · App. 13/285,487 · Granted Jan 27, 2015

Techniques for authentication via a mobile device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,943,320
App. No.
13/285,487
Granted
Jan 27, 2015
Kind
B2
Abstract

Techniques for authentication via a mobile device are provided. A mobile device is pre-registered for website authentication services. A user encounters a website displaying an embedded code as an image alongside a normal login process for that website. The image is identified by the mobile device, encrypted and signed by the mobile device and sent to a proxy. The proxy authenticates the code and associates it with the website. Credentials for the user are provided to the website to automatically authenticate the user for access to the website bypassing the normal login process associated with the website.

Claims (18)

1. A method implemented in a non-transitory machine-readable storage medium and processed by one or more processors or a proxy device and configured to perform the method, comprising:

preregistering, by the proxy device, a mobile device of a user for resource authentication;

acquiring, by the proxy device, an encrypted and signed code sent from the mobile device;

authenticating, by the proxy device, the encrypted and signed code;

associating, by the proxy device, a decrypted version of the encrypted and signed code with a specific resource; and

performing authentication, at the direction of the proxy device, for the user to have authenticated access to the specific resource by authenticating the user to a pre-existing login process of the specific resource with user credentials known to the specific resource, and wherein the proxy device processing as a transparent proxy to the user and processing as a reverse proxy to the specific resource and wherein the specific resource is unaware of the reverse proxy and the encrypted and signed code sent to the proxy device by the mobile device;

wherein performing further includes identifying a website session between the user and the specific resource via the decrypted version and acquiring credentials for the user via an identity service to supply the credentials to the specific resource on behalf of the user to initiate an authenticated version of the website session between the user and the specific resource on behalf of the user and without user interaction.

2. The method of claim 1 , wherein preregistering further includes downloading and initiating a mobile application to the mobile device that communicates with the method.

3. The method of claim 2 , wherein initiating further includes providing a private key to the mobile application that is for encrypting and signing the encrypted and signed code and the private key securely maintained and managed on the mobile application.

4. The method of claim 2 , wherein initiating further includes receiving from the mobile application a public key that is for decrypting and authenticating the encrypted and signed code.

5. The method of claim 2 , wherein preregistering further includes acquiring credentials for authenticating the user to the specific resource via a user interacting with the mobile application.

6. The method of claim 2 , wherein preregistering further includes acquiring a reference to an identity service that can supply credentials on behalf of the user for authenticating to the specific resource, the user supplying the reference via the mobile application.

7. The method of claim 1 , wherein acquiring further includes acquiring the encrypted and signed code after a mobile application on the mobile device, using a camera device of the mobile device, scans a barcode or Quick Response (QR) code presented as an image alongside a login screen for access to the specific resource.

8. The method of claim 6 , wherein acquiring further includes generating and inserting the barcode or QR code into a website page for the login screen before or when the user navigates to the website page using a different device from that which is associated with the mobile device.

9. The method of claim 1 , wherein acquiring further includes acquiring the encrypted and signed code after a mobile application on the mobile device detects an embedded barcode or Quick Response (QR) code in a website page that the user navigates to using a browser of the mobile device.

10. The method of claim 1 , wherein authenticating further includes checking a variety of factors against a policy once the encrypted and signed code is decrypted and validated to confirm authentication.

11. The method of claim 1 wherein associating further includes mapping the decrypted version with an identifier for the specific resource, the identifier recorded with the decrypted version when the method initially generated a barcode or Quick Response (QR) code for a website page of the specific resource and the mobile device used the barcode or quick response code to produce the encrypted and signed code that is sent back to the method.

12. The method of claim 1 , wherein identifying further includes performing the authentication on behalf of the user without the specific resource being aware of the method.

Assignments (8)
RELEASE OF SECURITY INTEREST REEL/FRAME 035656/0251 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: BORLAND SOFTWARE CORPORATION; ATTACHMATE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.)
Reel/Frame 062623/0009 →
RELEASE OF SECURITY INTEREST REEL/FRAME 044183/0718 Recorded Feb 2, 2023
From: JPMORGAN CHASE BANK, N.A.
To: MICRO FOCUS LLC (F/K/A ENTIT SOFTWARE LLC); BORLAND SOFTWARE CORPORATION; MICRO FOCUS (US), INC.; SERENA SOFTWARE, INC; ATTACHMATE CORPORATION; MICRO FOCUS SOFTWARE INC. (F/K/A NOVELL, INC.); NETIQ CORPORATION
Reel/Frame 062746/0399 →
CORRECTIVE ASSIGNMENT TO CORRECT THE TO CORRECT TYPO IN APPLICATION NUMBER 10708121 WHICH SHOULD BE 10708021 PREVIOUSLY RECORDED ON REEL 042388 FRAME 0386. ASSIGNOR(S) HEREBY CONFIRMS THE NOTICE OF SUCCESSION OF AGENCY. Recorded Jul 26, 2018
From: BANK OF AMERICA, N.A., AS PRIOR AGENT
To: JPMORGAN CHASE BANK, N.A., AS SUCCESSOR AGENT
Reel/Frame 048793/0832 →
SECURITY INTEREST Recorded Oct 11, 2017
From: ATTACHMATE CORPORATION; BORLAND SOFTWARE CORPORATION; NETIQ CORPORATION; MICRO FOCUS (US), INC.; MICRO FOCUS SOFTWARE, INC.; ENTIT SOFTWARE LLC; ARCSIGHT, LLC; SERENA SOFTWARE, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 044183/0718 →
NOTICE OF SUCCESSION OF AGENCY Recorded May 2, 2017
From: BANK OF AMERICA, N.A., AS PRIOR AGENT
To: JPMORGAN CHASE BANK, N.A., AS SUCCESSOR AGENT
Reel/Frame 042388/0386 →
CHANGE OF NAME Recorded Sep 13, 2016
From: NOVELL, INC.
To: MICRO FOCUS SOFTWARE INC.
Reel/Frame 040020/0703 →
SECURITY INTEREST Recorded May 13, 2015
From: MICRO FOCUS (US), INC.; BORLAND SOFTWARE CORPORATION; ATTACHMATE CORPORATION; NETIQ CORPORATION; NOVELL, INC.
To: BANK OF AMERICA, N.A.
Reel/Frame 035656/0251 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 18, 2012
From: SABIN, JASON ALLEN; BROWN, JEREMY RAY; BURCH, LLOYD LEON
To: NOVELL, INC.
Reel/Frame 028975/0549 →