IP Library Granted Patent US 9,614,843
Granted Patent B2
US 9,614,843 · App. 14/374,202 · Granted Apr 4, 2017

Context-aware adaptive authentication method and apparatus

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,614,843
App. No.
14/374,202
Granted
Apr 4, 2017
Kind
B2
Abstract

A context-aware adaptive authentication method may comprise: determining a context for a user; adjusting automatically an authentication configuration for the user based at least in part on the context, wherein different matching accuracies of an authentication algorithm for the same authentication input data are associated with respective authentication configurations; and performing an authentication of the user with the authentication configuration, wherein for the user under a safe context, the authentication is performed by decreasing a matching accuracy of the authentication algorithm.

Claims (56)

1. A computer-implemented method, comprising:

determining a context for a user, the determining including collecting context information and modeling collected context information for the user;

adjusting automatically an authentication configuration for the user based at least in part on the modeled context, wherein different matching accuracies of an authentication algorithm for the same authentication input data are associated with respective authentication configurations; and

performing an authentication of the user with the authentication configuration, wherein for the user under a safe context, the authentication is performed by decreasing a matching accuracy of the authentication algorithm, the safe context having a plurality of security sub-levels, wherein the matching accuracy of the authentication algorithm is selected in accordance with a security sub-level in the plurality of security sub-levels associated with the safe context determined for the user;

wherein said decreasing the matching accuracy of the authentication algorithm further comprises:

employing a normal recognition model of the authentication algorithm for recognizing authentication input data from the user; and

determining the user as valid, in response to a match between at least a part of the recognized authentication input data and a corresponding part of authentication reference data of the authentication algorithm;

wherein at least one of the determining, the adjusting, and the performing is performed by at least one processor of at least one computing system.

2. The method according to claim 1 , wherein said determining the context for the user further comprises:

detecting whether the user is under the safe context based at least in part on the context information.

3. The method according to claim 1 , wherein the context further comprises at least one of a place, time, a background environment, a transportation status, and the time elapsed since a previous authentication becomes invalid.

4. The method according to claim 1 , wherein the at least part of the recognized authentication input data further comprises a beginning part of the authentication input data, and wherein the user is determined as valid without waiting for recognizing the remaining part of the authentication input data.

5. The method according to claim 1 , wherein said decreasing the matching accuracy of the authentication algorithm further comprises:

replacing a normal recognition model of the authentication algorithm with an imprecise recognition model for recognizing authentication input data from the user; and

determining the user as valid, in response to a match between the recognized authentication input data and authentication reference data of the authentication algorithm.

6. The method according to claim 1 , further comprising:

performing a re-authentication of the user under the same context by adjusting a current authentication configuration, in response to a failure of the authentication.

7. The method according to claim 1 , wherein the authentication further comprises at least one of: a text-based authentication, a voice-based authentication, a pattern-based authentication, a graph-based authentication and a biometric-based authentication.

8. The method according to claim 5 , wherein said replacing the normal recognition model of the authentication algorithm with the imprecise recognition model further comprises at least one of:

modifying one or more parameters of the normal recognition model; and

reducing one or more refining processes.

9. The method according to claim 6 , wherein said adjusting the current authentication configuration further comprises:

increasing a current matching accuracy of the authentication algorithm;

or applying another authentication algorithm which is more reliable than the authentication algorithm.

10. An apparatus, comprising:

at least one processor; and

at least one memory including computer program code,

the at least one memory and the computer program code configured to, with the at least one processor, cause the apparatus to perform at least the following:

determining a context for a user, the determining including collecting context information and modeling collected context information for the user;

adjusting automatically an authentication configuration for the user based at least in part on the modeled context, wherein different matching accuracies of an authentication algorithm for the same authentication input data are associated with respective authentication configurations; and

performing an authentication of the user with the authentication configuration, wherein for the user under a safe context, the authentication is performed by decreasing a matching accuracy of the authentication algorithm, the safe context having a plurality of security sub-levels, wherein the matching accuracy of the authentication algorithm is selected in accordance with a security sub-level in the plurality of security sub-levels associated with the safe context determined for the user;

wherein said decreasing the matching accuracy of the authentication algorithm further comprises:

employing a normal recognition model of the authentication algorithm for recognizing authentication input data from the user; and

determining the user as valid, in response to a match between at least a part of the recognized authentication input data and a corresponding part of authentication reference data of the authentication algorithm.

11. The apparatus according to claim 10 , wherein said determining the context for the user further comprises:

detecting whether the user is under the safe context based at least in part on the context information.

12. The apparatus according to claim 10 , wherein the context further comprises at least one of a place, time, a background environment, a transportation status, and the time elapsed since a previous authentication becomes invalid.

13. The apparatus according to claim 10 , wherein the at least part of the recognized authentication input data further comprises a beginning part of the authentication input data, and wherein the user is determined as valid without waiting for recognizing the remaining part of the authentication input data.

14. The apparatus according to claim 10 , wherein said decreasing the matching accuracy of the authentication algorithm further comprises:

replacing a normal recognition model of the authentication algorithm with an imprecise recognition model for recognizing authentication input data from the user; and

determining the user as valid, in response to a match between the recognized authentication input data and authentication reference data of the authentication algorithm.

15. The apparatus according to claim 10 , wherein the apparatus is caused to further perform:

performing a re-authentication of the user under the same context by adjusting a current authentication configuration, in response to a failure of the authentication.

16. The apparatus according to claim 14 , wherein said replacing the normal recognition model of the authentication algorithm with the imprecise recognition model further comprises at least one of:

modifying one or more parameters of the normal recognition model; and

reducing one or more refining processes.

17. The apparatus according to claim 15 , wherein said adjusting the current authentication configuration further comprises:

increasing a current matching accuracy of the authentication algorithm or

applying another authentication algorithm which is more reliable than the authentication algorithm.

18. A computer program product comprising a non-transitory computer readable medium bearing computer program code embodied therein for use with a computer, the computer program code comprising:

code for determining a context for a user, the determining including collecting context information and modeling collected context information for the user;

code for adjusting automatically an authentication configuration for the user based at least in part on the modeled context, wherein different matching accuracies of an authentication algorithm for the same authentication input data are associated with respective authentication configurations; and

code for performing an authentication of the user with the authentication configuration, wherein for the user under a safe context, the authentication is performed by decreasing a matching accuracy of the authentication algorithm, the safe context having a plurality of security sub-levels, wherein the matching accuracy of the authentication algorithm is selected in accordance with a security sub-level in the plurality of security sub-levels associated with the safe context determined for the user;

wherein said decreasing the matching accuracy of the authentication algorithm further comprises:

employing a normal recognition model of the authentication algorithm for recognizing authentication input data from the user; and

determining the user as valid, in response to a match between at least a part of the recognized authentication input data and a corresponding part of authentication reference data of the authentication algorithm.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 25, 2015
From: NOKIA CORPORATION
To: NOKIA TECHNOLOGIES OY
Reel/Frame 035253/0037 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 23, 2014
From: JIA, XU; CAO, HUANHUAN; TIAN, JILEI; LIU, YING
To: NOKIA CORPORATION
Reel/Frame 033393/0452 →