IP Library Granted Patent US 9,602,504
Granted Patent B2
US 9,602,504 · App. 14/006,257 · Granted Mar 21, 2017

Strong Authentication by presentation of a number

Inventor: Benoit Ferlin (Hallennes-Lez-Haubourdin, FR)
Assignee: ONEY BANK
H04L63/0838G06Q20/3255G06Q20/385G06Q20/4012H04M1/57H04M1/663H04M3/42059
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,602,504
App. No.
14/006,257
Granted
Mar 21, 2017
Kind
B2
Abstract

Authentication method by one-time password from a user ( 10 ) having a computer terminal ( 11 ) and a telephone terminal ( 12 ) who wishes to access an online resource from an information system ( 20 ), the method including a step of triggering a call to said telephone terminal with a caller identifier including the one-time password.

Claims (31)

1. An authentication method by one-time password from a user having a computer terminal and a telephone terminal who wishes to access an online resource from a remote information system requiring entry of the one-time password into the computer terminal, said authentication method including a step of an automatic branch exchange triggering a call to said telephone terminal with a caller identifier comprising the one-time password, a telephone number of the telephone terminal being previously provided to said remote information system and received by the automatic branch exchange from the remote information system.

2. The method according to claim 1 , further comprising a step of declaring an identity of the user to the remote information system and a step of requesting access from the remote information system.

3. The method according to claim 1 , further comprising a step of the remote information system generating the one-time password.

4. The method according to claim 1 , further comprising a step of the automatic branch exchange receiving from the remote information system the one-time password in addition to the telephone number associated with the user.

5. The method according to claim 1 , further comprising a step of submitting to the remote information system the caller identifier of the call from the automatic branch exchange to the telephone terminal.

6. The method according to claim 1 , further comprising a step of verifying an agreement between a message submitted to the remote information system and a one-time password generated by the remote information system.

7. The method according to claim 1 , wherein an identity of the user comprises at least one identifier of the user.

8. The method according to claim 1 , wherein the call is interrupted after the one-time password is provided to the telephone terminal.

9. The method according to claim 8 , wherein the call is interrupted after a predetermined number of rings.

10. The method according to claim 8 , wherein the call is interrupted before a second ring.

11. The method according to claim 8 , wherein the call is interrupted before a third ring.

12. The method according to claim 1 , wherein the one-time password is communicated to the user via the triggered call without the user answering the call.

13. A system for authenticating by one-time password a user provided with a computer terminal and a telephone terminal who wishes to access an online resource from a remote information system requiring entry of the one-time password into the computer terminal, said system including a private automatic branch exchange for triggering a call to said telephone terminal with a caller identifier including the one-time password, the telephone private automatic branch exchange in communication with the remote information system for receiving a number of the telephone terminal.

14. The system according to claim 13 , wherein the remote information system comprises an application server:

that generates one-time passwords;

that communicates a one-time password and a telephone number to a private automatic branch exchange;

that verifies an agreement between a generated one-time password and a message submitted to the remote information system.

15. The system according to claim 13 , wherein the computer terminal and the telephone terminal are included in a single piece of user equipment.

16. A computer program implemented on a memory device, capable of being run on an electronic data processing unit and comprising instructions for implementation of an authentication method by one-time password from a user having a computer terminal and a telephone terminal who wishes to access an online resource from a remote information system requiring entry of the one-time password into the computer terminal, said authentication method including a step of a telephone private automatic branch triggering a call to said telephone terminal with a caller identifier comprising the one-time password, a telephone number of the telephone terminal being previously provided to said remote information system and received by the automatic branch exchange from the remote information system.

17. The computer program according to claim 16 further comprising a software application arranged to send to a computer terminal the caller identifier of a last incoming call to a telephone terminal.

18. A method for authenticating a user having a computer terminal and a telephone terminal, the user wishing to access an online resource from a remote information system requiring entry of authentication information into the computer terminal, said method comprising:

the remote information system receiving a request by the user to access the online resource;

the remote information system generating the authentication information;

the remote information system communicating the authentication information and a telephone number associated with the telephone terminal to a telephone exchange

the telephone exchange triggering a call to the telephone terminal with the authentication information; and

the remote information system subsequently receiving from the user information containing at least the authentication information; and

wherein the authentication information comprises a one-time password.

19. The method according to claim 18 , further comprising the remote information system storing in memory the request from the user and searching for the telephone number associated with the telephone terminal previously provided by the user.

20. The method according to claim 18 , further comprising the remote information system informing the user that the user will receive a call at the telephone number associated with the telephone terminal, the call containing the authentication information, and instructing the user to submit the authentication information to the remote information system.

21. The method according to claim 18 , wherein the authentication information subsequently received by the remote information system is contained in a caller identification for the triggered call by the telephone exchange for triggering a call to the telephone terminal with the authentication information further comprising submitting to the remote information system the caller identifier of a call received on the telephone terminal.

22. The method according to claim 18 , further comprising verifying an agreement between the information containing at least the authentication information received by the remote information system from the user message and the authentication information communicated to the telephone exchange.

Assignments (2)
CHANGE OF NAME Recorded Sep 7, 2016
From: BANQUE ACCORD
To: ONEY BANK
Reel/Frame 040084/0613 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 4, 2013
From: FERLIN, BENOIT
To: BANQUE ACCORD
Reel/Frame 031714/0614 →
Priority Claims (1)
FR 11 52664 · Mar 30, 2011 · national
Continuity (1)
Related Publication 20140075525A1 · Mar 13, 2014