IP Library Granted Patent US 10,032,008
Granted Patent B2
US 10,032,008 · App. 14/523,679 · Granted Jul 24, 2018

Trust broker authentication method for mobile devices

Inventors: Jonathan Charles Griffiths (Fremont, CA); Eliza Yingzi Du (Cupertino, CA); David William Burns (San Jose, CA); Muhammed Ibrahim Sezan (Los Gatos, CA)
Assignee: QUALCOMM Incorporated
G06F21/305G06F21/31G06F21/40H04L63/0861H04L63/105G06F2221/2133G06F2221/2139
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,032,008
App. No.
14/523,679
Granted
Jul 24, 2018
Kind
B2
Abstract

A mobile device may perform authentication with an authenticating entity. The mobile device may comprise a plurality of sensors and a processor. The processor may be configured to: receive an authentication request from the authenticating entity requesting authentication information; and determine if the authentication request satisfies predefined user privacy preferences. If so, the processor may be configured to: retrieve the authentication information from at least one sensor to form a trust vector in response to the authentication request and to command transmission of the trust vector to the authenticating entity for authentication.

Claims (39)

1. A mobile device comprising:

a transceiver;

a plurality of sensors; and

a processor configured to:

transmit a request for a transaction to an authenticating entity through the transceiver;

receive an authentication request from an authenticating entity requesting authentication information through the transceiver;

determine if the authentication request satisfies predefined user privacy preferences, wherein the user privacy preferences are predefined based on the authenticating entity and the transaction, and, if so:

retrieve the authentication information from at least one sensor to form a trust vector in response to the authentication request; and

transmit the trust vector to the authenticating entity for authentication, wherein if the authentication request does not satisfy the predefined user privacy preferences based upon types of user-approved device specific sensor data and types of 1) biometric sensor information, and/or 2) data input, a trust broker to negotiate with the authenticating entity to determine the trust vector that satisfies the predefined user privacy preferences and the authentication requirements for the authenticating entity, and the trust broker to transmit the negotiated trust vector to the authenticating entity through the transceiver.

2. The mobile device of claim 1 , wherein the trust broker determines at least one sensor data score, biometric sensor information score, or data input score for inclusion in the trust vector.

3. The mobile device of claim 1 , wherein the trust vector includes a multi-field data message including at least one of sensor data, biometric sensor information, data input, a sensor data score, a biometric sensor information score, a data input score, a trust coefficient, a trust score, a credential, an authentication coefficient, an authentication score, an authentication level, an authentication system output, or authentication information to satisfy the authentication request.

4. The mobile device of claim 1 , wherein one or more components of the trust vector are updated to provide continuous authentication.

5. A method to perform authentication with an authenticating entity comprising:

transmitting a request for a transaction to the authenticating entity through a transceiver;

receiving an authentication request from the authenticating entity requesting authentication information through the transceiver;

determining if the authentication request satisfies predefined user privacy preferences, wherein the user privacy preferences are predefined based on the authenticating entity and the transaction, and, if so:

retrieving the authentication information to form a trust vector in response to the authentication request; and

transmitting the trust vector to the authenticating entity for authentication, wherein if the authentication request does not satisfy the predefined user privacy preferences based upon types of user-approved device specific sensor data and types of 1) biometric sensor information, and/or 2) data input, a trust broker to negotiate with the authenticating entity to determine the trust vector that satisfies the predefined user privacy preferences and the authentication requirements for the authenticating entity, and the trust broker to transmit the negotiated trust vector to the authenticating entity through the transceiver.

6. The method of claim 5 , further comprising determining at least one sensor data score, biometric sensor information score, or data input score for inclusion in the trust vector.

7. The method of claim 5 , wherein the trust vector includes a multi-field data message including at least one of sensor data, biometric sensor information, data input, a sensor data score, a biometric sensor information score, a data input score, a trust coefficient, a trust score, a credential, an authentication coefficient, an authentication score, an authentication level, an authentication system output, or authentication information to satisfy the authentication request.

8. The method of claim 5 , further comprising updating the trust vector to provide continuous authentication.

9. A non-transitory computer-readable medium including code that, when executed by a processor, causes the processor to:

transmit a request for a transaction to an authenticating entity through a transceiver;

receive an authentication request from an authenticating entity requesting authentication information through the transceiver;

determine if the authentication request satisfies predefined user privacy preferences, wherein the user privacy preferences are predefined based on the authenticating entity and the transaction, and, if so:

retrieve the authentication information to form a trust vector in response to the authentication request; and

transmit the trust vector to the authenticating entity for authentication, wherein if the authentication request does not satisfy the predefined user privacy preferences based upon types of user-approved device specific sensor data and types of 1) biometric sensor information, and/or 2) data input, a trust broker to negotiate with the authenticating entity to determine the trust vector that satisfies the predefined user privacy preferences and the authentication requirements for the authenticating entity, and the trust broker to transmit the negotiated trust vector to the authenticating entity through the transceiver.

10. The computer-readable medium of claim 9 , further comprising code to determine at least one sensor data score, biometric sensor information score, or data input score for inclusion in the trust vector.

11. The computer-readable medium of claim 9 , wherein the trust vector includes a multi-field data message including at least one of sensor data, biometric sensor information, data input, a sensor data score, a biometric sensor information score, a data input score, a trust coefficient, a trust score, a credential, an authentication coefficient, an authentication score, an authentication level, an authentication system output, or authentication information to satisfy the authentication request.

12. The computer-readable medium of claim 9 , further comprising code to update the trust vector to provide continuous authentication.

13. A mobile device comprising:

means for transmitting a request for a transaction to an authenticating entity;

means for receiving an authentication request from an authenticating entity requesting authentication information;

means for determining if the authentication request satisfies predefined user privacy preferences, wherein the user privacy preferences are predefined based on the authenticating entity and the transaction, and, if so:

means for retrieving the authentication information to form a trust vector in response to the authentication request; and

means for transmitting the trust vector to the authenticating entity for authentication, wherein, if the authentication request does not satisfy the predefined user privacy preferences based upon types of user-approved device specific sensor data and types of 1) biometric sensor information, and/or 2) data input, utilizing means for negotiating with the authenticating entity to determine the trust vector that satisfies the predefined user privacy preferences and the authentication requirements for the authenticating entity, and utilizing the means for transmitting the negotiated trust vector to the authenticating entity.

14. The mobile device of claim 13 , further comprising means for determining at least one sensor data score, biometric sensor information score, or data input score for inclusion in the trust vector.

15. The mobile device of claim 13 , wherein the trust vector includes a multi-field data message including at least one of sensor data, biometric sensor information, data input, a sensor data score, a biometric sensor information score, a data input score, a trust coefficient, a trust score, a credential, an authentication coefficient, an authentication score, an authentication level, an authentication system output, or authentication information to satisfy the authentication request.

16. The mobile device of claim 13 , further comprising means for updating the trust vector to provide continuous authentication.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 24, 2014
From: GRIFFITHS, JONATHAN; DU, ELIZA YINGZI; BURNS, DAVID WILLIAM; SEZAN, MUHAMMED
To: QUALCOMM INCORPORATED
Reel/Frame 034584/0522 →
Continuity (3)
Provisional Application 61943428 · Feb 23, 2014
Provisional Application 61943435 · Feb 23, 2014
Related Publication 20150242601A1 · Aug 27, 2015
Cited By (1)
US 12,250,214