SMARTCARD BASED MULTIFACTOR BANKING AUTHENTICATION
A multifactor authentication (MFA) enforcement server provides multifactor authentication services to users and existing services. During registration, the MFA enforcement server changes a user's password on an existing service to a password unknown to the user. During normal usage when the user accesses the existing service through the MFA enforcement server, the MFA enforcement server enforces a multifactor authentication enforcement policy.
1 . A method performed by a banking server with multifactor authentication comprising:
receiving a login request from a client device in possible communication with a smartcard secure element;
providing access to a first set of banking services when the client device is in communication with the smartcard secure element; and
providing access to a subset of the first set of banking services when the client device is not in communication with the smartcard secure element.
2 . The method of claim 1 wherein the client device comprises a mobile phone.
3 . The method of claim 2 wherein the smartcard secure element is embedded in the mobile phone.
4 . The method of claim 2 wherein the smartcard secure element is not embedded in the mobile phone.
5 . The method of claim 1 wherein the client device comprises a laptop computer.
6 . The method of claim 5 wherein the smartcard secure element is embedded in the laptop computer.
7 . The method of claim 5 wherein the smartcard secure element is not embedded in the laptop computer.
8 . The method of claim 1 wherein the client device comprises a tablet computer.
9 . The method of claim 8 wherein the smartcard secure element is embedded in the tablet computer.
10 . The method of claim 8 wherein the smartcard secure element is not embedded in the tablet computer.
11 . A banking server with multifactor authentication, the banking server including a computer-program product embodied on a non-transitory computer-readable medium, the computer-program product comprising:
a multifactor authentication enforcement component operable to allow a user of a client device in possible communication with a smartcard secure element to log in to the banking server; and
a content filter component to provide access to a first set of banking services when the client device is in communication with the smartcard secure element, and to provide access to a subset of the first set of banking services when the client device is not in communication with the smartcard secure element.
12 . The banking server of claim 11 wherein the multifactor authentication enforcement component is operable to allow a user of a client device with an embedded smartcard secure element to log in to the banking server.
13 . The banking server of claim 11 wherein the multifactor authentication enforcement component is operable to allow a user of a mobile phone in possible communication with a smartcard secure element to log in to the banking server.
14 . The banking server of claim 11 wherein the multifactor authentication enforcement component is operable to allow a user of a laptop computer in possible communication with a smartcard secure element to log in to the banking server.
15 . The banking server of claim 11 wherein the multifactor authentication enforcement component is operable to allow a user of a tablet computer in possible communication with a smartcard secure element to log in to the banking server.
16 . A non-transitory computer-readable medium having instructions stored thereon that when accessed result in a banking server with multifactor authentication performing a method comprising:
receiving a login request from a client device in possible communication with a smartcard secure element;
providing access to a first set of banking services when the client device is in communication with the smartcard secure element; and
providing access to a subset of the first set of banking services when the client device is not in communication with the smartcard secure element.
17 . The non-transitory computer-readable medium of claim 16 wherein the client device comprises a mobile phone.
18 . The non-transitory computer-readable medium of claim 17 wherein the smartcard secure element is embedded in the mobile phone.
19 . The non-transitory computer-readable medium of claim 16 wherein the client device comprises a laptop computer.
20 . The non-transitory computer-readable medium of claim 16 wherein the client device comprises a tablet computer.