IP Library Granted Patent US 10,542,430
Granted Patent B2
US 10,542,430 · App. 15/392,337 · Granted Jan 21, 2020

Quorum-based secure authentication

Inventors: Edward J. Gaudet (Hanover, MA); David M. T. Ting (Sudbury, MA)
Assignee: IMPRIVATA, INC.
H04W12/06H04L63/061H04L63/0853H04L63/10H04W12/04H04W4/80
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,542,430
App. No.
15/392,337
Granted
Jan 21, 2020
Kind
B2
Abstract

Representative embodiments of secure authentication to a resource in accordance with a predefined, electronically stored quorum-based authentication policy include causing electronic interaction among multiple devices that constitute a quorum in accordance with the policy, computationally determining whether the interaction satisfies the policy, and if so, electronically according access to the resource to one or more individuals associated with the interacting device(s).

Claims (22)

1. A method of controlling access to a resource in accordance with a predefined, electronically stored quorum-based authentication policy, the method comprising:

computationally generating a final key satisfying the authentication policy;

splitting the final key into at least three keys; and

transmitting each of the at least three keys to a different electronic device associated with a user thereof, the at least three devices (i) not including the resource and (ii) constituting a quorum in accordance with the authentication policy, whereby electronic interaction among the at least three devices produces the final key.

2. The method of claim 1 , wherein the authentication policy specifies an order in which the at least three keys are assemblable into the final key.

3. The method of claim 1 , wherein the final key is an encryption key.

4. The method of claim 1 , wherein the devices comprise NFC nodes.

5. The method of claim 1 , wherein the final key is computationally generated by an authentication server.

6. The method of claim 1 , wherein the final key is computationally generated in response to an update to the authentication policy.

7. A method of terminating access to a resource in accordance with a predefined, electronically stored quorum-based authentication policy, the method comprising:

causing electronic interaction among at least three devices each associated with a user thereof, the at least three interacting devices (i) not including the resource and (ii) constituting a quorum in accordance with the authentication policy, each of the devices contributing a key to another of the devices whereby a final key is produced and contains all of the contributed keys in an order specified by the authentication policy;

computationally determining whether the final key satisfies the authentication policy; and

when the final key satisfies the authentication policy, terminating any previously granted access to the resource.

8. The method of claim 7 , further comprising, prior to the electronic interaction among the at least three devices, electronically granting access to the resource to at least one of the users and/or at least one of the devices.

9. The method of claim 7 , wherein the interaction comprises NFC interaction and the devices comprise NFC nodes.

10. The method of claim 7 , wherein the computationally determining step is performed by an authentication server and comprises decrypting the final key.

11. The method of claim 7 , wherein the final key is an encryption key.

12. The method of claim 7 , further comprising identifying the resource using information transmitted from at least one of the interacting devices.

13. The method of claim 7 , wherein the interaction is performed in a sequence of pairwise communications among the devices.

14. The method of claim 7 , wherein the keys contributed by each of the devices to produce the final key are not stored on the devices prior to the electronic interaction among the devices.

15. The method of claim 7 , wherein the keys contributed by each of the devices to produce the final key are generated on each of the devices only upon the electronic interaction among the devices.

16. The method of claim 7 , wherein the keys contributed by each of the devices to produce the final key are stored on the devices prior to the electronic interaction among the devices.

Assignments (6)
RELEASE OF SECURITY INTEREST IN INTELLECTUAL PROPERTY COLLATERAL AT REEL/FRAME NO. 59644/0097 Recorded Sep 18, 2024
From: BLUE OWL CAPITAL CORPORATION (FORMERLY KNOWN AS OWL ROCK CAPITAL CORPORATION), AS COLLATERAL AGENT
To: IMPRIVATA, INC.
Reel/Frame 068981/0732 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Apr 8, 2022
From: IMPRIVATA, INC.
To: OWL ROCK CAPITAL CORPORATION, AS COLLATERAL AGENT
Reel/Frame 059644/0097 →
SECURITY INTEREST Recorded Dec 22, 2020
From: IMPRIVATA, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 054836/0937 →
RELEASE OF SECURITY INTEREST Recorded Dec 2, 2020
From: GOLUB CAPITAL MARKETS LLC
To: IMPRIVATA, INC
Reel/Frame 054510/0572 →
SECURITY INTEREST Recorded Oct 24, 2017
From: IMPRIVATA, INC.
To: GOLUB CAPITAL MARKETS LLC
Reel/Frame 043934/0875 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 28, 2016
From: TING, DAVID M.T.; GAUDET, EDWARD J.
To: IMPRIVATA, INC.
Reel/Frame 041209/0179 →
Continuity (3)
Continuation 13859894 · Apr 10, 2013
Provisional Application 61622161 · Apr 10, 2012
Related Publication 20170142579A1 · May 18, 2017
Cited By (1)
US 12,335,725