IP Library Granted Patent US 9,525,675
Granted Patent B2
US 9,525,675 · App. 14/583,421 · Granted Dec 20, 2016

Encryption key retrieval

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,525,675
App. No.
14/583,421
Granted
Dec 20, 2016
Kind
B2
Abstract

Particular embodiments described herein provide for an electronic device that can be configured to include an authentication module. The authentication module can be configured to receiving a request to access an electronic device, where the electronic device is separate from the authentication module, collect authentication data, communicate the authentication data to a network element, receive an authentication key, and communicate the authentication key to the electronic device.

Claims (46)

1. At least one computer-readable medium comprising one or more instructions that when executed by at least one processor, cause the at least one processor to:

receive a request to access an electronic device;

collect authentication data at a secondary electronic device, wherein the secondary electronic device is separate from the electronic device;

verify the authentication data;

receive an authentication key from a network element that is physically separate from the electronic device and the secondary electronic device; and

communicate the authentication key to the electronic device, wherein the authentication key is not persistently stored in the electronic device and the secondary electronic device, wherein the electronic device requires pre-boot authentication before an operating system on the electronic device is allowed to run and the authentication key provides the pre-boot verification.

2. The at least one computer-readable medium of claim 1 , wherein the authentication data is verified by the secondary electronic device.

3. The at least one computer-readable medium of claim 1 , wherein the authentication data includes authentication information about a user of the electronic device and about the secondary electronic device, wherein the authentication data is verified by the network element.

4. The at least one computer-readable medium of claim 1 , wherein a primary function of the secondary electronic device does not include receiving the authentication key.

5. The at least one computer-readable medium of claim 1 , wherein the authentication key expires after a predetermined amount of time or a predetermined number of uses.

6. The at least one computer-readable medium of claim 1 , wherein the authentication key is used to access protected data on the electronic device.

7. The at least one computer-readable medium of claim 1 , wherein the authentication key is used to access pre-operating system protected data on the electronic device.

8. An electronic device comprising:

a hardware processor; and

a verification engine configured to:

request an authentication key from a secondary electronic device, wherein the secondary electronic device previously received the authentication key from a network element that is physically separate from the electronic device and the secondary electronic device;

receive the authentication key from the secondary electronic device, wherein the secondary electronic device is separate from the electronic device; and

verify the authentication key and the secondary electronic device, wherein the authentication key is not persistently stored in the electronic device and the secondary electronic device, wherein the electronic device requires pre-boot authentication before an operating system on the electronic device is allowed to run and the authentication key provides the pre-boot verification.

9. The electronic device of claim 8 , wherein the verification engine accesses a whitelist and a blacklist to verify the secondary electronic device.

10. The electronic device of claim 8 , wherein the secondary electronic device is physically separate from the electronic device.

11. The electronic device of claim 8 , wherein the authentication key is used to access protected data on the electronic device.

12. The electronic device of claim 8 , wherein the authentication key is used to access pre-operating system protected data on the electronic device and the authentication key expires after a predetermined amount of time.

13. The electronic device of claim 8 , wherein the secondary electronic device receives the authentication key from a network element.

14. The electronic device of claim 8 , wherein the authentication key is required for pre-boot authorization.

15. A method comprising:

receiving a request to access an electronic device that is separate from a secondary electronic device;

collecting authentication data at the secondary electronic device;

verifying the authentication data;

receiving an authentication key from a network element that is physically separate from the electronic device and the secondary electronic device; and

communicating the authentication key to the electronic device, wherein the authentication key is not persistently stored in the electronic device and the secondary electronic device, wherein the electronic device requires pre-boot authentication before an operating system on the electronic device is allowed to run and the authentication key provides the pre-boot verification.

16. The method of claim 15 , wherein the authentication data includes authentication information about a user of the electronic device and about the secondary electronic device.

17. The method of claim 15 , wherein the authentication data is verified by the network element.

18. The method of claim 15 , wherein verifying the authentication data includes comparing the authentication data to a whitelist and a blacklist.

19. The method of claim 15 , wherein the authentication key is used to access protected data on the electronic device.

20. The method of claim 15 , wherein the authentication key is used to access pre-operating system protected data on the electronic device.

21. The method of claim 15 , wherein the authentication key is required for pre-boot authorization.

22. A system for receiving an authentication key, the system comprising:

a hardware processor; and

an authentication engine configured for:

receiving a request to access an electronic device, wherein the electronic device is separate from the authentication module;

collecting authentication data;

communicating the authentication data to a network element that is physically separate from the electronic device and the secondary electronic device;

receiving an authentication key; and

communicating the authentication key to the electronic device, wherein the authentication key is not persistently stored in the electronic device and the secondary electronic device, wherein the electronic device requires pre-boot authentication before an operating system on the electronic device is allowed to run and the authentication key provides the pre-boot verification.

23. The system of claim 22 , wherein the authentication data includes authentication information about a user of the electronic device and about a secondary electronic device that includes the authentication engine.

24. The at least one computer-readable medium of claim 1 , wherein the authentication key must be reacquired each time the electronic device restarts.

Assignments (8)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE PATENT TITLES AND REMOVE DUPLICATES IN THE SCHEDULE PREVIOUSLY RECORDED AT REEL: 059354 FRAME: 0335. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 23, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060792/0307 →
SECURITY INTEREST Recorded Mar 3, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 059354/0335 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045056/0676 Recorded Mar 2, 2022
From: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 059354/0213 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →