IP Library Granted Patent US 9,641,538
Granted Patent B1
US 9,641,538 · App. 13/536,990 · Granted May 2, 2017

Authenticating an entity

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,641,538
App. No.
13/536,990
Granted
May 2, 2017
Kind
B1
Abstract

There is disclosed a method, system and a computer program product for use in authenticating an entity. An authentication request is received from the entity. Information in connection with the entity is acquired from an external source. Based on the information, a risk score is set such that the riskiness of the authentication request can be readily deduced therefrom.

Claims (36)

1. A computer-implemented method for use in authenticating an entity, the method comprising the steps of:

receiving a request to authenticate the entity;

in response to receiving the request, determining a current location of the entity;

acquiring information from a trusted third-party external source for use in authenticating the entity, wherein the information comprises at least one of security-related, financial-related or criminal-related information in connection with the entity, further wherein the information comprises an opinion formed by the trusted third-party external source relating to the riskiness of the entity;

performing an analysis of the current location and the information from the trusted third-party external source in order to assess risk in connection with the request;

in response to performing the analysis, determining a challenge to issue to the entity, wherein the challenge relates to the information from the trusted third-party external source; and

based on the challenge, generating an authentication result for use in authenticating the entity;

characterized in that at least one of the steps of the computer-implemented method is performed by a computing device comprising at least one processor.

2. The method as claimed in claim 1 , wherein the risk score can be generated within a range of riskiness with one end of the range indicating extreme riskiness and the other end indicating minimum riskiness.

3. The method as claimed in claim 1 , wherein the risk score can be dynamically updated in response to the information acquired from the external source changing periodically.

4. The method as claimed in claim 1 , further comprising:

granting access to the entity to a resource in response to the risk score exceeding a predefined threshold; and

denying access to the entity to the resource in response to the risk score not exceeding a predefined threshold.

5. An apparatus for use in authenticating an entity, the apparatus comprising:

at least one processing device, said at least one processing device comprising a processor coupled to a memory;

wherein the apparatus is configured to:

receive a request to authenticate the entity;

in response to receiving the request, determine a current location of the entity;

acquire information from a trusted third-party external source for use in authenticating the entity, wherein the information comprises at least one of security-related, financial-related or criminal-related information in connection with the entity, further wherein the information comprises an opinion formed by the trusted third-party external source relating to the riskiness of the entity;

perform an analysis of the current location and the information from the trusted third-party external source in order to assess risk in connection with the request;

in response to performing the analysis, determine a challenge to issue to the entity, wherein the challenge relates to the information from the trusted third-party external source; and

based on the challenge, generate an authentication result for use in authenticating the entity.

6. The apparatus as claimed in claim 5 , the risk score can be generated within a range of riskiness with one end of the range indicating extreme riskiness and the other end indicating minimum riskiness.

7. The apparatus as claimed in claim 5 , wherein the risk score can be dynamically updated in response to the information acquired from the external source changing periodically.

8. The apparatus as claimed in claim 5 , wherein the apparatus is further configured to:

grant access to the entity to a resource in response to the risk score exceeding a predefined threshold; and

deny access to the entity to the resource in response to the risk score not exceeding a predefined threshold.

9. A computer program product for use in authenticating an entity, the computer program product being embodied in a non-transitory computer readable storage medium and comprising instructions for:

receiving a request to authenticate the entity;

in response to receiving the request, determining a current location of the entity;

acquiring information from a trusted third-party external source for use in authenticating the entity, wherein the information comprises at least one of security-related, financial-related or criminal-related information in connection with the entity, further wherein the information comprises an opinion formed by the trusted third-party external source relating to the riskiness of the entity;

performing an analysis of the current location and the information from the trusted third-party external source in order to assess risk in connection with the request;

in response to performing the analysis, determining a challenge to issue to the entity, wherein the challenge relates to the information from the trusted third-party external source; and

based on the challenge, generating an authentication result for use in authenticating the entity.

10. The computer program product as claimed in claim 9 , wherein the risk score can be generated within a range of riskiness with one end of the range indicating extreme riskiness and the other end indicating minimum riskiness.

11. The computer program product as claimed in claim 9 , wherein the risk score can be dynamically updated in response to the information acquired from the external source changing periodically.

Assignments (7)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (043775/0082) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060958/0468 →
RELEASE OF SECURITY INTEREST AT REEL 043772 FRAME 0750 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 058298/0606 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Sep 6, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 043775/0082 →
PATENT SECURITY AGREEMENT (CREDIT) Recorded Sep 6, 2017
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 043772/0750 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 3, 2017
From: EMC CORPORATION
To: EMC IP HOLDING COMPANY LLC
Reel/Frame 041872/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 28, 2012
From: BAILEY, DANIEL V.; FRIEDMAN, LAWRENCE N.; DOTAN, YEDIDYA; CURRY, SAMUEL
To: EMC CORPORATION
Reel/Frame 028465/0269 →