IP Library Granted Patent US 11,347,862
Granted Patent B2
US 11,347,862 · App. 16/738,465 · Granted May 31, 2022

Credential management for an information handling system

Inventors: Daniel Lawrence Hamlin (Round Rock, TX); Charles Delbert Robison, Jr. (Buford, GA)
Assignee: Dell Products L.P.
G06F21/575G06F21/32G06F21/604
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,347,862
App. No.
16/738,465
Granted
May 31, 2022
Kind
B2
Abstract

A credential management system for an information handling system dynamically determines an available set of authentication techniques based on a system configuration. The dynamic configuration may be based on devices connected to the information handling system, such as keyboard, fingerprint reader, and facial recognition. The dynamic configuration may also be based on a dynamic posture of the information handling system, such as whether a devices is in an open-lid, closed-lid, tent-shape, tablet-mode, or docked configuration.

Claims (41)

1. A method, comprising:

determining a system configuration of an information handling system, wherein the step of determining the system configuration comprises determining a physical posture of an arrangement of components of the information handling system;

determining a set of available authentication techniques for the information handling system based on the determined system configuration;

determining at least one preferred authentication technique from the set of available authentication techniques of the information handling system; and

receiving, from a user of the information handling system, an authentication attempt corresponding to the at least one preferred authentication technique without receiving from the user a selection of an authentication technique.

2. The method of claim 1 , further comprising receiving a request to initiate an authentication challenge for a user of the information handling system after resuming from a low-power state, wherein the determining the system configuration is performed based, at least in part, on the receiving of the request to initiate the authentication challenge.

3. The method of claim 2 , further comprising: receiving a second request to initiate a second authentication challenge for the user of the information handling system; determining a second system configuration of the information handling system based, at least in part, on receiving the second request; and determining a second set of available authentication techniques for a user to respond to the second authentication challenge based on the second system configuration.

4. The method of claim 1 , wherein the step of determining the system configuration further comprises determining one or more authentication devices coupled to the information handling system.

5. The method of claim 4 , wherein the step of determining one or more authentication devices comprises determining a keyboard with a fingerprint reader is coupled to the information handling system, and the step of determining the set of available authentication techniques comprises determining fingerprint authentication is part of the set of available authentication techniques.

6. The method of claim 1 , wherein the step of determining the system configuration comprises determining the information handling system is a laptop with a closed lid, and wherein determining the set of available authentication techniques comprises determining a facial recognition authentication technique is unavailable based on the system configuration having a closed lid.

7. The method of claim 1 , wherein the step of determining the system configuration further comprises determining the information handling system received a pre-boot authentication for a user of the information handling system.

8. The method of claim 1 , wherein the step of determining the preferred authentication technique comprises: retrieving a security policy for the information handling system, wherein the security policy specifies certain authentication techniques as the preferred authentication technique.

9. The method of claim 1 , wherein the step of determining a set of available authentication techniques for the information handling system based on the determined system configuration comprises:

determining a plurality of authentication techniques of the information handling system; and

removing, based on the determined system configuration, at least one of the plurality of authentication techniques to obtain the set of available authentication techniques for the information handling system.

10. The method of claim 1 , further comprising presenting to a user of the information handling system a user interface for selecting from the set of available authentication techniques for the information handling system based on the determined system configuration.

11. The information handling system of claim 1 , wherein the processor is further configured to perform steps comprising presenting to a user of the information handling system a user interface for selecting from the set of available authentication techniques for the information handling system based on the determined system configuration.

12. An information handling system, comprising:

a memory; and

a processor coupled to the memory and configured to perform steps comprising:

determining a system configuration of the information handling system, wherein the step of determining the system configuration comprises determining a physical posture of an arrangement of components of the information handling system; and

determining a set of available authentication techniques for the information handling system based on the determined system configuration;

determining at least one preferred authentication technique from the set of available authentication techniques of the information handling system; and

receiving, from a user of the information handling system, an authentication attempt corresponding to the at least one preferred authentication technique without receiving from the user a selection of an authentication technique.

13. The information handling system of claim 12 , wherein the processor is further configured to perform steps comprising: receiving a request to initiate an authentication challenge for a user of the information handling system after resuming from a low-power state, wherein the determining the system configuration is performed based, at least in part, on the receiving of the request to initiate the authentication challenge.

14. The information handling system of claim 12 , wherein the step of determining the system configuration further comprises determining one or more authentication devices coupled to the information handling system.

15. The information handling system of claim 12 , wherein the step of determining a set of available authentication techniques for the information handling system based on the determined system configuration comprises:

determining a plurality of authentication techniques of the information handling system; and

removing, based on the determined system configuration, at least one of the plurality of authentication techniques to obtain the set of available authentication techniques for the information handling system.

16. A computer software product, comprising:

a non-transitory computer readable medium comprising code that when executed by a processor causes the processor to perform steps comprising:

determining a system configuration of an information handling system, wherein the step of determining the system configuration comprises determining a physical posture of an arrangement of components of the information handling system; and

determining a set of available authentication techniques for the information handling system based on the determined system configuration;

determining at least one preferred authentication technique from the set of available authentication techniques of the information handling system; and

receiving, from a user of the information handling system, an authentication attempt corresponding to the at least one preferred authentication technique without receiving from the user a selection of an authentication technique.

17. The computer software product of claim 16 , wherein the medium further comprises code that when executed by the processor causes the processor to perform steps comprising: receiving a request to initiate an authentication challenge for a user of the information handling system after resuming from a low-power state, wherein the determining the system configuration is performed based, at least in part, on the receiving of the request to initiate the authentication challenge.

18. The computer software product of claim 16 , wherein the step of determining the system configuration further comprises determining one or more authentication devices coupled to the information handling system.

19. The computer software product of claim 16 , wherein the step of determining a set of available authentication techniques for the information handling system based on the determined system configuration comprises:

determining a plurality of authentication techniques of the information handling system; and

removing, based on the determined system configuration, at least one of the plurality of authentication techniques to obtain the set of available authentication techniques for the information handling system.

20. The computer software product of claim 16 , wherein the code, when executed by the processor, causes the processor to perform steps further comprising presenting to a user of the information handling system a user interface for selecting from the set of available authentication techniques for the information handling system based on the determined system configuration.

Assignments (9)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053311/0169) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0742 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052216/0758) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0680 →
RELEASE OF SECURITY INTEREST AF REEL 052243 FRAME 0773 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 058001/0152 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 053311/0169 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 26, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 052243/0773 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Mar 24, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052216/0758 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 9, 2020
From: HAMLIN, DANIEL LAWRENCE; ROBISON, CHARLES DELBERT, JR.
To: DELL PRODUCTS L.P.
Reel/Frame 051468/0610 →