IP Library › Granted Patent US 11,775,628
Granted Patent B2
US 11,775,628 · App. 16/339,309 · Granted Oct 3, 2023

Multi factor authentication using different devices

Inventors: Francois-Eric Michel Guyomarc'h (Clermont, FR); James William Holland (Braishfield, GB); Milan Khan (London, GB); Caleb Wattles (Paris, FR)
Assignee: ASSA ABLOY AB
G06F21/40G06F21/34G06F21/36G06F21/42G06F21/57G06Q20/3223G06Q20/3276H04L63/0838H04L63/0853H04L63/18H04W12/06G06K7/1417H04L63/0869H04W12/77
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,775,628
App. No.
16/339,309
Granted
Oct 3, 2023
Kind
B2
Abstract

Customizing an application on a mobile device includes storing at least a portion of customization data in a customization server that is independent of the mobile device, a user of the mobile device accessing the customization server independently of the mobile device, receiving authorization data from the customization server that enables the mobile device to securely receive customization data from the customization server, and the mobile device using the authorization data to cause the customization server to provide the customization data to the mobile device. The authorization data may be provided by postal message, email message, an SMS text message, and/or a visual code provided on a screen of a computer used to access the customization server. The user may use a computer to provide credential information to access the customization server. Customizing the application may allow the mobile device to access a user service on behalf of the user.

Claims (25)

1. A method of customizing an application on a mobile device, the application generic to at least one of a plurality of service providers or a plurality of users, the method comprising:

storing customization data in a customization server that is independent of the mobile device, the customization data comprising at least one or more cryptographic keys specific to at least one of: (1) communication between a given service provider of the plurality of service providers and one or more users or (2) communication between a user of the mobile device and one or more of the plurality of service providers, the customization data further comprising graphical customization information for customizing a look of the application when displayed on the mobile device, and when used to modify the application, the customization data thereby changes the application to a customized application that is specific to at least one of the given service provider or the user of the mobile device and that has a customized look based on the graphical customization information;

in response to the user of the mobile device contacting the customization server through an access channel other than the application to initiate customization of the application, providing the authorization data to the user from the customization server, wherein the authorization data enables the mobile device to securely receive the customization data from the customization server; and

receiving the authorization data from the mobile device and causing the customization server to provide the customization data to the mobile device, wherein the customization data enables the mobile device to change the application to the customized application.

2. The method, according to claim 1 , wherein the authorization data is provided by at least one of: postal message, email message, an SMS text message, or a visual code provided on a screen of a computer used to access the customization server.

3. The method, according to claim 2 , wherein the authorization data is provided by the visual code on the screen of the computer and is configured for capture by the mobile device.

4. The method, according to claim 3 , further comprising receiving credential information from the user via the computer to access the customization server.

5. The method, according to claim 1 , wherein customizing the application allows the mobile device to access a user service on behalf of the user.

6. The method, according to claim 5 , wherein the user service is provided by the given service provider.

7. The method, according to claim 1 , wherein a template is used to populate the customization data.

8. The method, according to claim 1 , wherein certificate pinning is used to require that the mobile device only communicate with predetermined customization servers.

9. The method, according to claim 1 , wherein the user of the mobile device contacting the customization server through an access channel other than the application to initiate customization of the application comprises the user of the mobile device contacting the customization server without using the mobile device.

10. A non-transitory computer-readable medium containing software that customizes an application on a mobile device, the application generic to at least one of a plurality of service providers or a plurality of users, the software comprising:

executable code that stores customization data in a customization server that is independent of the mobile device, the customization data comprising at least one or more cryptographic keys specific to at least one of: (1) communication between a given service provider of the plurality of service providers and one or more users or (2) communication between a user of the mobile device and one or more of the plurality of service providers, the customization data further comprising graphical customization information for customizing a look of the application when displayed on the mobile device, and when used to modify the application, the customization data thereby changes the application to a customized application that is specific to at least one of the given service provider or the user of the mobile device and that has a customized look based on the graphical customization information;

executable code that, in response to the user of the mobile device contacting the customization server through an access channel other than the application to initiate customization of the application, provides the authorization data to the user from the customization server, wherein the authorization data enables the mobile device to securely receive the at least a portion of the customization data from the customization server; and

executable code that enables the mobile device to use the authorization data to cause the customization server to provide the customization data to the mobile device, wherein the customization data enables the mobile device to change the application to the customized application.

11. The non-transitory computer-readable medium, according to claim 10 , wherein the authorization data is provided by at least one of: postal message, email message, an SMS text message, or a visual code provided on a screen of a computer used to access the customization server.

12. The non-transitory computer-readable medium, according to claim 11 , wherein the authorization data is provided by the visual code on the screen of the computer and is configured for capture by the mobile device.

13. The non-transitory computer-readable medium, according to claim 12 , further comprising executable code that receives credential information from the user via the computer to access the customization server.

14. The non-transitory computer-readable medium, according to claim 10 , wherein executable code that customizes the application allows the mobile device to access a user service on behalf of the user.

15. The non-transitory computer-readable medium, according to claim 14 , wherein the user service is provided by the customization server.

16. The non-transitory computer-readable medium, according to claim 10 , wherein a template is used to populate the customization data.

17. The non-transitory computer-readable medium, according to claim 10 , wherein certificate pinning is used to require that the mobile device only communicate with predetermined customization servers.

18. The non-transitory computer-readable medium, according to claim 10 , wherein the one or more cryptographic keys are specific to communication between the given service provider and the user of the mobile device.

19. The non-transitory computer-readable medium, according to claim 10 , wherein the user of the mobile device contacting the customization server through an access channel other than the application to initiate customization of the application comprises the user of the mobile device contacting the customization server without using the mobile device.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 24, 2019
From: GUYOMARC'H, FRANCOIS-ERIC MICHEL; HOLLAND, JAMES WILLIAM; KHAN, MILAN; WATTLES, CALEB
To: ASSA ABLOY AB
Reel/Frame 049281/0655 →
Continuity (3)
Provisional Application 62411107 · Oct 21, 2016
Provisional Application 62404130 · Oct 4, 2016
Related Publication 20190228143A1 · Jul 25, 2019