IP Library Granted Patent US 10,453,319
Granted Patent B2
US 10,453,319 · App. 15/911,613 · Granted Oct 22, 2019

Methods and apparatus for management of intrusion detection systems using verified identity

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,453,319
App. No.
15/911,613
Granted
Oct 22, 2019
Kind
B2
Abstract

Disclosed are techniques for configuring an intrusion detection system, by receiving from a user device, a set of identity credentials, sending the set of identity credentials to an identity service to verify a user's identity that is associated with the set of credentials, receiving a result of the verification of the identity; and when verified, configuring the intrusion detection system to operate in a mode pre-selected based on the verified identity.

Claims (44)

1. A method comprising:

storing one or more data structures defining a plurality of system modes of an intrusion detection system, each of the plurality of system modes associated with an identity of one of a plurality of users, wherein the one or more data structures are a set of rules, wherein each rule of the set of rules comprises one or more parameters for an identity variable, a security component variable, an action variable associated with the security component variable, and a security level variable;

configuring the intrusion detection system, by:

receiving from a user device, a set of identity credentials;

sending the set of identity credentials to an identity service to verify an identity of one user of the plurality of users associated with the set of identity credentials; and

receiving a result of a verification of the identity; and when verified:

selecting one system mode of the plurality of system modes based on the identity of the one user and the one or more data structures; and

configuring the intrusion detection system to operate based on the one system mode.

2. The method of claim 1 wherein subsequent to receiving the set of identity credentials,

receiving additional identification information via at least one of a credential reader or the user device, wherein the user device runs an identity wallet application, where the intrusion detection system processes the additional identification information as originating from a trusted source based on having received the result of the verification of the identity indicating the set of identity credentials are verified.

3. The method of claim 2 wherein the additional identification information is biometric information that the intrusion detection system processes to verify the one user in possession of the user device.

4. The method of claim 2 wherein the additional identification information is previously verified by the identity service and is registered mobile credential information stored on the user device.

5. The method of claim 1 , wherein the set of identity credentials are proxies for identity attributes associated with the identity of the one user.

6. A system comprises:

a processor and memory, wherein the memory is configured to store one or more data structures defining a plurality of system modes for an intrusion detection system, each of the plurality of system modes associated with one identity of one of a plurality of users, wherein the one or more data structures are a set of rules, wherein each rule of the set of rules comprises one or more parameters for an identity variable, a security component variable, an action variable associated with the security component variable, and a security level variable, wherein the processor and the memory configure the intrusion detection system, by instructions to cause the system to:

receive from a user device, a set of identity credentials;

send the set of identity credentials to an identity service to verify an identity of one user of the plurality of users associated with the set of identity credentials; and

receive a result of a verification of the identity; and when verified:

select one system mode of the plurality of system modes based on the identity and the one or more data structures; and

configure the intrusion detection system to operate based on the one system mode.

7. The system of claim 6 wherein the system is part of the intrusion detection system.

8. A system comprising:

one or more memory devices configured to store one or more data structures defining a plurality of system modes of an intrusion detection system, each of the plurality of system modes associated with an identity of one of a plurality of users, wherein the one or more data structures are a set of rules, wherein each rule of the set of rules comprises one or more parameters for an identity variable, a security component variable, an action variable associated with the security component variable, and a security level variable, wherein the one or more memory devices are configured to store instructions that, when executed by one or more processors, cause the one or more processors to configure the intrusion detection system by:

receiving from a user device, a set of identity credentials;

sending the set of identity credentials to an identity service to verify an identity of one user of the plurality of users associated with the set of identity credentials; and

receiving a result of a verification of the identity; and when verified:

select one system mode of the plurality of system modes based on the identity and the one or more data structures; and

configure the intrusion detection system to operate based on the one system mode.

9. A computer program product stored on a non-transitory computer readable media comprising instructions to cause a system to:

store one or more data structures defining a plurality of system modes of an intrusion detection system, each of the plurality of system modes associated with an identity of one of a plurality of users, wherein the one or more data structures are a set of rules, wherein each rule of the set of rules comprises an identity parameter, a security component parameter, an action parameter associated with the security component parameter, and a security level parameter;

receive from a user device, a set of identity credentials;

send the set of identity credentials to an identity service to verify an identity of one user of the plurality of users associated with the set of identity credentials; and

receive a result of a verification of the identity; and when verified:

select one system mode of the plurality of system modes based on the identity of the one user and the one or more data structures; and

configure the intrusion detection system to operate based on the one system mode.

10. The computer program product of claim 9 wherein subsequent to a reception of the set of identity credentials, the instructions cause the system to receive additional identification information via at least one of the user device, wherein the user device runs an identity wallet application or a credential reader, where the intrusion detection system processes the additional identification information as originating from a trusted source based on having received the result of the verification of the identity indicating the set of identity credentials are verified.

11. The computer program product of claim 10 wherein the additional identification information is biometric information that the intrusion detection system processes to verify the one user in possession of the user device.

12. The computer program product of claim 10 wherein the set of identity credentials were previously verified by the identity service and is a registered mobile credential stored on the user device.

13. The computer program product of claim 9 , wherein the set of identity credentials are proxies for identity attributes associated with the identity of the one user.

14. The system of claim 8 wherein subsequent to a reception of the set of identity credentials,

receiving additional identification information via at least one of a credential reader or the user device, wherein the user device runs an identity wallet application, where the intrusion detection system processes the additional identification information as originating from a trusted source based on having received the result of the verification of the identity presented to the intrusion detection system.

15. The system of claim 14 wherein the additional identification information is biometric information that the intrusion detection system processes to verify the one user in possession of the user device.

16. The system of claim 14 wherein the set of identity credentials were previously verified by the identity service and is a registered mobile credential stored on the user device.

17. The system of claim 8 , wherein the set of identity credentials are proxies for identity attributes associated with the identity of the one user.

Assignments (11)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 23, 2024
From: JOHNSON CONTROLS TYCO IP HOLDINGS LLP
To: TYCO FIRE & SECURITY GMBH
Reel/Frame 068494/0384 →
NUNC PRO TUNC ASSIGNMENT Recorded Feb 4, 2022
From: JOHNSON CONTROLS, INC.
To: JOHNSON CONTROLS TYCO IP HOLDINGS LLP
Reel/Frame 058955/0472 →
NUNC PRO TUNC ASSIGNMENT Recorded Feb 4, 2022
From: JOHNSON CONTROLS US HOLDINGS LLC
To: JOHNSON CONTROLS, INC.
Reel/Frame 058955/0394 →
NUNC PRO TUNC ASSIGNMENT Recorded Feb 4, 2022
From: SENSORMATIC ELECTRONICS, LLC
To: JOHNSON CONTROLS US HOLDINGS LLC
Reel/Frame 058957/0138 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 30, 2021
From: JOHNSON CONTROLS INC
To: JOHNSON CONTROLS TYCO IP HOLDINGS LLP
Reel/Frame 058600/0126 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 30, 2021
From: SENSORMATIC ELECTRONICS LLC
To: JOHNSON CONTROLS US HOLDINGS LLC
Reel/Frame 058600/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 30, 2021
From: JOHNSON CONTROLS US HOLDINGS LLC
To: JOHNSON CONTROLS INC
Reel/Frame 058600/0080 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 8, 2018
From: JARVIS, GRAEME
To: SENSORMATIC ELECTRONICS, LLC
Reel/Frame 045742/0769 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 20, 2018
From: GRAMMER, GEORGE C.
To: SENSORMATIC ELECTRONICS, LLC
Reel/Frame 045597/0361 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 4, 2018
From: LAMARCA, MICHAEL
To: SENSORMATIC ELECTRONICS, LLC
Reel/Frame 045430/0890 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 19, 2018
From: RUMBLE, TEREZINHA
To: SENSORMATIC ELECTRONICS, LLC
Reel/Frame 045265/0440 →