IP Library Granted Patent US 11,063,933
Granted Patent B2
US 11,063,933 · App. 14/349,454 · Granted Jul 13, 2021

User authentication

Inventors: Jeremy Goldstone (Manchester, GB); Dermot Dwyer (High Peak, GB)
Assignee: Barclays Execution Services Limited
H04L63/0838G06F21/313G06Q20/3223G06Q20/3272G06Q20/3276G06Q20/4097G06Q20/40145H04L63/18H04W12/06G06F21/36G06F2221/2115G06Q20/3274H04L51/04H04L63/0853H04L63/107H04L63/108H04W12/77
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,063,933
App. No.
14/349,454
Granted
Jul 13, 2021
Kind
B2
Abstract

User Authentication A mobile user authentication application is operable to perform one or more of the following operations: ⋅authenticate a user in a voice call to a telephony service, by passing an authentication code to the telephony service within the voice call [FIGS. 2, 2 c ]; ⋅validate a user instruction during a secure messaging session [FIG. 3 ]; and ⋅authenticate a user at a physical local service by obtaining a challenge code at that local service, validating the challenge code with a remote authentication service, obtain a confirmation code from the authentication service and presenting the confirmation code for validation at the local service [FIGS. 4, 4 a and 4 b ].

Claims (29)

1. A method of user authentication by an application on a mobile telephony device, the method comprising the following steps executed by the application:

prior to initiating a telephone call to a remote telephony service, receiving authentication information from a user;

sending the authentication information to a remote authentication service;

when the authentication service identifies the user using the authentication information, receiving an authentication status from the authentication service including a call identifier, wherein the call identifier is a unique session identifier or includes a one-time passcode;

receiving separate data input by the user that identifies a purpose of the telephone call;

appending the separate data to the call identifier;

initiating the telephone call to a remote telephony service;

sending the call identifier with the appended separate data to the remote telephony service after the telephone call has been connected to the remote telephony service; and

after determining an authentication comparison match between the unique session identifier or the one-time passcode received in the initiated telephone call and an expected session identifier or an expected one-time passcode, the expected session identifier or the expected one-time passcode: (1) determined by the remote authentication service in response to the identification of the user using the authentication information, and (2) subsequently saved in a repository, receiving communications via the initiated telephone call from a telephone operator specific to the purpose of the telephone call and determined by routing the telephone call according to the appended separate data,

wherein the authentication comparison match is determined by the remote telephony service and verifies that the initiated telephone call was made by the user.

2. The method of claim 1 , wherein the user is verified by verbal validation within the telephone call.

3. The method of claim 2 , wherein the verbal validation comprises confirming data relating to the user.

4. The method of claim 3 , wherein the data relating to the user is confirmed by the remote authentication service.

5. The method of claim 1 , wherein the user is authenticated locally at the mobile telephony device by the interaction with the application, to receive the call identifier from the remote authentication service.

6. The method of claim 1 , wherein the call identifier is included as an audio signal within the telephone call.

7. A mobile device system for user authentication, the mobile device system comprising:

a processor;

a memory coupled to the processor; and

an application stored on the memory and executed by the processor, wherein the application is arranged to:

prior to initiating a telephone call to a remote telephony service, receive authentication information from a user;

send the authentication information to a remote authentication service;

when the authentication service identifies the user using the authentication information, receive an authentication status from the authentication service including a call identifier, wherein the call identifier is a unique session identifier or includes a one-time passcode;

receive separate data input by the user that identifies a purpose of the telephone call;

append the separate data to the call identifier;

initiate the telephone call to a remote telephony service;

send the call identifier with the appended separate data to the remote telephony service, after the telephone call has been connected to the remote telephony service; and

after determining an authentication comparison match between the unique session identifier or the one-time passcode received in the initiated telephone call and an expected session identifier or an expected one-time passcode, the expected session identifier or the expected one-time passcode: (1) determined by the remote authentication service in response to the identification of the user using the authentication information, and (2) subsequently saved in a repository, receive communications via the initiated telephone call from a telephone operator specific to the purpose of the telephone call and determined by routing the telephone call according to the appended separate data,

wherein the authentication comparison match is determined by the remote telephony service and verifies that the initiated telephone call was made by the user.

8. The method of claim 1 , wherein the user provides the separate data identifying the purpose of the telephone call without receiving any requests from the telephony service.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 13, 2020
From: GOLDSTONE, JEREMY; DWYER, DERMOT
To: BARCLAYS BANK PLC
Reel/Frame 053492/0293 →
CHANGE OF NAME Recorded Nov 22, 2019
From: BARCLAYS SERVICES LIMITED
To: BARCLAYS EXECUTION SERVICES LIMITED
Reel/Frame 051085/0309 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 2, 2018
From: BARCLAYS BANK PLC
To: BARCLAYS SERVICES LIMITED
Reel/Frame 047400/0169 →
Priority Claims (2)
GB 1116976 · Oct 3, 2011 · national
GB 1210933 · Jun 20, 2012 · national
Continuity (1)
Related Publication 20140250512A1 · Sep 4, 2014
Cited By (3)
US 12,255,881 US 12,483,555 US 12,524,511