IP Library Granted Patent US 8,751,794
Granted Patent B2
US 8,751,794 · App. 13/338,505 · Granted Jun 10, 2014

System and method for secure nework login

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,751,794
App. No.
13/338,505
Granted
Jun 10, 2014
Kind
B2
Abstract

Systems and methods for providing an expedited login process that is relatively fast and that still provides a reasonable level of security and a reasonable method for mitigating compromised login information are described. In one configuration, a web server sends an anonymous unique machine readable login identifier code to a browser display of a client computer. A server account holding user then uses his smartphone to scan the code and send a message including the login identifier code and a smartphone identifier code to the server. The server obtains the identity of the user and authenticates the user by determining possession of the smartphone using the smartphone identifier. The server then uses the login identifier code to log the user into the server and into the user account at the client computer.

Claims (11)

1. A computer implemented method executing on a server computer for a user using a client device to login to an account session with the server computer comprising:

receiving an access request from user using the client device via a network;

sending a two dimensional barcode including a unique login ID to the client device;

receiving a user identifier and the unique login ID from a personal user device;

using the user identifier to obtain a public key for the user;

encrypting a session ID using the public key;

encoding the session ID in a second two dimensional barcode;

sending the second two dimensional barcode to the client device via the network;

receiving from the personal user device the session ID in decrypted form;

determining that the session ID received from the personal user device is identical to the session ID included in the second two dimensional barcode; and

redirecting the access request from the user using the client device to a signed in account session for the user with the server computer.

Assignments (2)
RELEASE OF SECURITY INTEREST Recorded Mar 2, 2023
From: ROYAL BANK OF CANADA
To: VERTEX AEROSPACE LLC; VECTRUS SYSTEMS CORPORATION; ADVANTOR SYSTEMS, LLC
Reel/Frame 062927/0079 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 28, 2011
From: HAULUND, JENS
To: PITNEY BOWES INC.
Reel/Frame 027451/0931 →