IP Library Patent Application 14217289
Patent Application
App. No. 14/217,289

Universal Authentication and Data Exchange Method, System and Service

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
14/217,289
Abstract

A method for securely communicating information between an authenticator at a local endpoint and a remote device at a remote endpoint and for authenticating to the remote device. The method comprises activating the authenticator; determining at least one communication scheme useable at the local or remote endpoints or any midpoints between the local and the remote endpoints on a communication channel; determining authentication schemes and authentication credentials usable at the local or remote endpoints or any midpoints on the communication channel; determining data encryption schemes useable at the local or remote endpoints or any midpoints on the communication channel; a user supplying authentication credentials to the authenticator; the authenticator supplying determined authentication credentials to the remote device; and responsive to a successful authentication, the authenticator and remote device exchanging information according to a determined communication scheme and a determined encryption scheme.

Claims (36)

1 . A method for securely communicating information between an authenticator at a local endpoint and a remote device at a remote endpoint and for authenticating to the remote device, the method comprising:

activating the authenticator;

determining at least one communication scheme useable at the local or remote endpoints or any midpoints between the local and the remote endpoints on a communication channel;

determining authentication schemes and authentication credentials usable at the local or remote endpoints or any midpoints on the communication channel;

determining data encryption schemes useable at the local or remote endpoints or any midpoints on the communication channel;

a user supplying authentication credentials to the authenticator;

the authenticator supplying determined authentication credentials to the remote device; and

responsive to a successful authentication, the authenticator and remote device exchanging information according to a determined communication scheme and a determined encryption scheme.

2 . The method of claim 1 wherein the authenticator communicates with the local endpoint over a wireless link, and wherein wireless protocol signals from the authenticator appear as keyboard protocol input signals to the local endpoint.

3 . The method of claim 2 wherein the keyboard input protocol signals populate authentication credential fields of the local endpoint.

4 . The method of claim 2 wherein the wireless protocol signals comprise one or more of a human interface device (HID) protocol signal, a serial port protocol (SPP) signal , a wireless keyboard protocol signal, a wireless protocol signal interpreted by the local endpoint as a keyboard protocol signal.

5 . The method of claim 1 wherein the authenticator communicates with the remote endpoint and supplies authentication credentials of a user of the local endpoint.

6 . The method of claim 5 wherein the user requests authentication credentials from the authenticator, wherein requested authentication credentials are responsive to a remote device that the user desires to access.

7 . The method of claim 1 wherein the authenticator and the remote device exchange information over a wireless link.

8 . The method of claim 1 wherein the authenticator is enclosed within one of a ring, a bracelet, a necklace, a wallet, a smart card, a watch, a wearable item, a key fob, a key ring attachment, a USB device, a dongle, a mobile device, and a static device.

9 . The method of claim 1 wherein one of the many midpoints comprises a midpoint device that communicates with the authenticator or the remote device.

10 . The method of claim 1 wherein the communications scheme comprises a communications link, the communications link further comprising one of a radio frequency link, a Bluetooth link, a Bluetooth LE link, a WiFi link, a radio frequency identification link, a near field communications link, an audio link, and a wireless link, and wherein the communications scheme comprises one of sound signals, radio frequency signals, image signals, QR codes, optical signals, serial signals and parallel signals.

11 . The method of claim 1 wherein the authentication credentials comprise one or more of one-time-pass codes, challenge/response queries and dynamic pairing.

12 . The method of claim 1 wherein the step of determining authentication credentials comprises the authenticator automatically detecting the endpoint device and requesting the authentication credentials, automatically choosing the authentication credentials, and the user selecting specific authentication credentials.

13 . The method of claim 1 wherein the remote device comprises one of an application, website, service, software application, a cloud-based device, and cloud-based software.

14 . The method of claim 1 further comprising determining a data compression scheme useable at the local or remote endpoints or any midpoints, and wherein the authenticator and remote device exchange information according to a determined data compression scheme.

15 . The method of claim 1 wherein the step of activating the authenticator comprises one of activating the authenticator by the remote device and manually activating the authenticator by a user.

16 . The method of claim 1 wherein a step of determining authentication schemes and authentication credentials comprises reviewing a history of prior access to the remote device, a user selecting authentication credentials, and the authenticator negotiating the authentication credentials with the remote device.

17 . The method of claim 1 wherein for predetermined remote devices the authenticator automatically authenticates a user to the remote device without user action.

18 . The method of claim 1 wherein the authentication credentials comprise one or a combination of one-time-passcodes, challenge/response queries, multi-factor authentication, asymmetric authentication, symmetric authentication, PKI, PGP, and dynamic pairing.

19 . The method of claim 1 wherein the authenticator detects environmental conditions to reduce required authentication credentials or authentication schemes.

20 . The method of claim 1 wherein a user interface at the local endpoint provides the user with a choice of authentication credentials or authentication schemes.

21 . A method for protecting authentication credentials, the method comprising:

a user recognizing that authentication credentials are required for accessing a remote device;

the user providing authentication credentials associated with the remote device to an authenticator;

the user authenticating to the authenticator; and

the authenticator supplying the authentication credentials for use by the remote device to permit the user to access to the remote device.

22 . The method of claim 21 wherein the step of the user providing authentication credentials comprises the authenticator becoming aware that the remote device requires authentication credentials for accessing the remote device.

23 . The method of claim 21 wherein the step of the user authenticating to the authenticator comprises the user authenticating to a first device, after which the first device and the authenticator exchange information.

24 . The method of claim 21 wherein a step of the user authenticating to the authenticator comprises the user supplying one or more of an item known by the user, a user location, a biometric, and an item the user possesses.

25 . The method of claim 24 wherein the item known by the user comprises one or more of a PIN, a password, a pattern, a gesture, a random number, and a sequence, and wherein the biometrics item comprises one or more of a gesture, a finger print, a facial print, a 3D facial print, an eye scan , an eye characteristic, an eye vein, DNA, a vein pattern, a palm print, a heartbeat characteristic, a skin pore characteristic, vibrometry, and a scent, and wherein the item the user possesses comprises a serialized device, a wallet having a user identification.

Assignments (6)
RELEASE OF SECURITY INTEREST Recorded Sep 3, 2019
From: SAGARD HOLDINGS MANAGER LP
To: NXT-ID, INC.; LOGICMARK, LLC; FIT PAY, INC.; 3D-ID, LLC
Reel/Frame 050246/0397 →
RELEASE OF SECURITY INTEREST IN PATENTS Recorded May 7, 2019
From: SAGARD HOLDINGS MANAGER LP
To: NXT-ID, INC.; LOGICMARK, LLC; FIT PAY, INC.; 3D-ID, LLC
Reel/Frame 050235/0083 →
SECURITY AGREEMENT Recorded May 30, 2018
From: LOGICMARK, LLC; NXT-ID, INC.; FIT PAY, INC.; 3D-ID, LLC
To: SAGARD HOLDINGS MANAGER LP
Reel/Frame 046269/0411 →
RELEASE OF SECURITY INTEREST Recorded May 25, 2018
From: EXWORKS CAPITAL FUND I, L.P.
To: NXT-ID, INC.; LOGICMARK, LLC
Reel/Frame 045905/0619 →
SECURITY INTEREST Recorded Jul 25, 2016
From: NXT-ID, INC.; LOGICMARK, LLC
To: EXWORKS CAPITAL FUND I, L.P., AS AGENT
Reel/Frame 039247/0912 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 6, 2014
From: TUNNELL, DAVID; MITCHELL, JUSTIN; ZURASKY, JACOB
To: NXT-ID, INC.
Reel/Frame 033476/0776 →