IP Library Granted Patent US 9,971,885
Granted Patent B2
US 9,971,885 · App. 15/016,130 · Granted May 15, 2018

Determining user authentication requirements based on the current location of the user being within a predetermined area requiring altered authentication requirements

Inventors: David M. Grigg (Rock Hill, SC); Peter John Bertanzetti (Charlotte, NC); Charles Jason Burrell (Middleburg, FL); Carrie Anne Hanson (Charlotte, NC); Joseph Neil Johansen (Rock Hill, SC); Michael E. Toth (Charlotte, NC)
Assignee: Bank of America Corporation
G06F21/31H04L63/08H04L63/10H04W4/02H04W4/021H04W4/023G06F2221/2111
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,971,885
App. No.
15/016,130
Granted
May 15, 2018
Kind
B2
Abstract

Systems, apparatus, methods, and computer program products are provided for determining a user's authentication requirements/credentials for a specific network access session based on the current location of the user in comparison to predetermined boundaries of location that have altered authentication requirements, in the form of, increased or decreased authentication requirements/credentials that differ from the standard authentication requirements.

Claims (29)

1. A computer program product comprising:

a non-transitory computer-readable medium comprising:

a first set of codes for causing a server to determine that unsecured wireless communication is prevalent in a predefined physical area;

a second set of codes for causing the server, in response to determining that unsecured wireless communication is prevalent in the predefined physical area, to configure the predefined physical area for altered authentication requirements, the altered authentication requirements providing for increased authentication requirements in comparison to standard authentication requirements used to initially access a network service provided by the server, wherein the altered authentication requirements are further based on a designated time period, the server being operated by an entity;

a third set of codes for causing the server, after determining that unsecured wireless communication is prevalent in the predefined physical area and configuring the predefined physical area for the altered authentication requirements, to receive, from a handheld mobile communication device in wireless network communication with the server, a request for a user operating the handheld mobile communication device to access the network service provided by the server, accessible via an executable application stored on the handheld mobile communication device, where the network service requires user authentication for access;

a fourth set of codes for causing the server to, in response to receiving the request, determine a current physical location of the user and a time associated with the request based on data received from the handheld mobile communication device;

a fifth set of codes for causing the server to determine that the current location of the user is within the predefined physical area and that the time associated with the request is during the designated time period associated with the predefined physical area;

a sixth set of codes for causing the server to identify the altered authentication requirements associated with the predefined physical area and the designated time period;

a seventh set of codes for causing the server to receive from the user authentication data; and

an eighth set of codes for causing the server to provide the handheld mobile communication device with initial access to the network service in response to the user meeting the determined altered authentication requirements associated with the predefined physical area and the designated time period.

2. The computer program product of claim 1 , wherein wherein the predefined physical area is defined by the entity operating the server.

3. The computer program product of claim 1 , wherein wherein the predefined physical area is defined by the user.

4. The computer program product of claim 1 , further comprising a ninth set of codes for causing the server to determine that the handheld mobile communication device has an altered level of access within the network service, wherein the altered level of access provides for one of (1) increased or (2) decreased access to functionality within the network service once the user has met the altered authentication requirements.

5. The computer program product of claim 4 , wherein the altered level of access provides for increased access to functionality within the network service once the user has met the altered authentication requirements.

6. The computer program product of claim 4 , wherein the altered level of access provides for decreased access to functionality within the network service once the user has met the altered authentication requirements.

7. A method for determining user authentication requirements, the method comprising:

determining, by a server, that unsecured wireless communication is prevalent in a predefined physical area;

in response to determining that unsecured wireless communication is prevalent in the predefined physical area, configuring, by the server, the predefined physical area for altered authentication requirements, the altered authentication requirements providing for increased authentication requirements in comparison to standard authentication requirements used to initially access a network service provided by the server, wherein the altered authentication requirements are further based on a designated time period, the server being operated by an entity;

after determining that unsecured wireless communication is prevalent in the predefined physical area and configuring the predefined physical area for the altered authentication requirements, receiving, by the server, from a handheld mobile communication device in wireless network communication with the server, a request for a user operating the handheld mobile communication device to access the network service provided by the server, accessible via an executable application stored on the handheld mobile communication device, where the network service requires user authentication for access;

in response to receiving the request, determining, by the server, a current physical location of the user and a time associated with the request based on data received from the handheld mobile communication device;

determining, by the server, that the current location of the user is within the predefined physical area and that the time associated with the request is during the designated time period associated with the predefined physical area;

identifying, by the server, the altered authentication requirements associated with the predefined physical area and the designated time period;

receiving, by the server, from the user authentication data; and

providing, by the server, the handheld mobile communication device with initial access to the network service in response to the user meeting the determined altered authentication requirements associated with the predefined physical area and the designated time period.

8. The method of claim 7 , wherein the predefined physical area is defined by the entity operating the server.

9. The method of claim 7 , wherein the predefined physical area is defined by the user.

10. The method of claim 7 , further comprising determining, by the server, that the handheld mobile communication device has an altered level of access within the network service, wherein the altered level of access provides for one of (1) increased or (2) decreased access to functionality within the network service once the user has met the altered authentication requirements.

11. The method of claim 10 , wherein the altered level of access provides for increased access to functionality within the network service once the user has met the altered authentication requirements.

12. The method of claim 10 , wherein the altered level of access provides for decreased access to functionality within the network service once the user has met the altered authentication requirements.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 4, 2016
From: GRIGG, DAVID M.; BERTANZETTI, PETER JOHN; BURRELL, CHARLES JASON; HANSON, CARRIE ANNE; JOHANSEN, JOSEPH NEIL; TOTH, MICHAEL E.
To: BANK OF AMERICA CORPORATION
Reel/Frame 037669/0894 →
Continuity (2)
Continuation 14175646 · Feb 7, 2014
Related Publication 20160156609A1 · Jun 2, 2016