IP Library Granted Patent US 10,855,672
Granted Patent B2
US 10,855,672 · App. 16/884,966 · Granted Dec 1, 2020

Establishing a trusted login procedure

Inventor: Zhizhang Zhou (Hangzhou, CN)
Assignee: Advanced New Technologies Co., Ltd.
H04L63/0815H04L9/3239H04L29/06H04L63/0876G06Q20/382
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,855,672
App. No.
16/884,966
Granted
Dec 1, 2020
Kind
B2
Abstract

A first login request for the first service is received at a first server that provides a first service and from a terminal. Device identifier information of the terminal is generated by a hardware processor at the first server. The device identifier information of the terminal is associated, by the hardware processor at the first server, with first login state information. The first login state information indicates that the terminal has logged into the first server. The device identifier information and the first login state information are transmitted to a second server. The second server provides a second service that has a trusted login relationship with the first service.

Claims (50)

1. A computer-implemented method for a trusted login procedure, comprising:

receiving, from a terminal and at a first server that provides a first service, a first login request for the first service;

generating, by the first server, device identifier information of the terminal;

associating, by the first server, the device identifier information of the terminal with first login state information, wherein the first login state information indicates that the terminal was verified and has logged into the first server successfully;

transmitting, by the first server and to a second server, the device identifier information and the first login state information, wherein the device identifier information and the first login state information is transmitted to the second server in response to a redirect operation, wherein the second server provides a second service that has a trusted login relationship with the first service, wherein the second server establishes second login state information for the second service based on the first login state information, and wherein the second server associates the device identifier information of the terminal with the second login state information;

recording, by the first server, that the first login state information has been shared with the second server by associating an identifier of the second server with the first login state information;

receiving, by the second server from a device, an application access request for the second service;

determining, by the second server, that an identifier information of the device sending the application access request matches the device identifier information of the terminal associated with the second login state information; and

in response, returning, by the second server, an application access response to the terminal.

2. The method of claim 1 , wherein the device identifier information is generated based on terminal information received from the terminal, and the terminal information includes at least one of terminal internal protocol (IP) address, terminal media access control (MAC) address, terminal subscriber identity module (SIM) card number, or terminal Universal Integrated Circuit Card (UICC) number.

3. The method of claim 1 , wherein the device identifier information is calculated using an MD5 algorithm.

4. The method of claim 1 , further comprising:

receiving, at the first server and from the second server, a validity query;

determining, by the first server, whether the terminal has a valid login state with the first server; and

transmitting, by the first server, a validity response to the second server, wherein the validity response indicates whether the terminal has the valid login state with the first server.

5. The method of claim 1 , wherein the first login state information includes user information associated with the first login request.

6. A non-transitory, computer-readable medium storing one or more instructions executable by a computer system to perform operations comprising:

receiving, from a terminal and at a first server that provides a first service, a first login request for the first service;

generating, by the first server, device identifier information of the terminal;

associating, by the first server, the device identifier information of the terminal with first login state information, wherein the first login state information indicates that the terminal was verified and has logged into the first server successfully;

transmitting, by the first server and to a second server, the device identifier information and the first login state information, wherein the device identifier information and the first login state information is transmitted to the second server in response to are direct operation, wherein the second server provides a second service that has a trusted login relationship with the first service, wherein the second server establishes second login state information for the second service based on the first login state information, and wherein the second server associates the device identifier information of the terminal with the second login state information;

recording, by the first server, that the first login state information has been shared with the second server by associating an identifier of the second server with the first login state information;

receiving, by the second server from a device, an application access request for the second service;

determining, by the second server, that an identifier information of the device sending the application access request matches the device identifier information of the terminal associated with the second login state information; and

in response, returning, by the second server, an application access response to the terminal.

7. The non-transitory, computer-readable medium of claim 6 , wherein the device identifier information is generated based on terminal information received from the terminal, and the terminal information includes at least one of terminal internal protocol (IP) address, terminal media access control (MAC) address, terminal subscriber identity module (SIM) card number, or terminal Universal Integrated Circuit Card (UICC) number.

8. The non-transitory, computer-readable medium of claim 6 , wherein the device identifier information is calculated using an MD5 algorithm.

9. The non-transitory, computer-readable medium of claim 6 , the operations further comprise:

receiving, at the first server and from the second server, a validity query;

determining, by the first server, whether the terminal has a valid login state with the first server; and

transmitting, by the first server, a validity response to the second server, wherein the validity response indicates whether the terminal has the valid login state with the first server.

10. The non-transitory, computer-readable medium of claim 6 , wherein the first login state information includes user information associated with the first login request.

11. A computer-implemented system, comprising:

one or more computers; and

one or more computer memory devices interoperably coupled with the one or more computers and having tangible, non-transitory, machine-readable media storing one or more instructions that, when executed by the one or more computers, perform one or more operations comprising:

receiving, from a terminal and at a first server that provides a first service, a first login request for the first service;

generating, by the first server, device identifier information of the terminal;

associating, by the first server, the device identifier information of the terminal with first login state information, wherein the first login state information indicates that the terminal was verified and has logged into the first server successfully;

transmitting, by the first server and to a second server, the device identifier information and the first login state information, wherein the device identifier information and the first login state information is transmitted to the second server in response to are direct operation, wherein the second server provides a second service that has a trusted login relationship with the first service, wherein the second server establishes second login state information for the second service based on the first login state information, and wherein the second server associates the device identifier information of the terminal with the second login state information;

recording, by the first server, that the first login state information has been shared with the second server by associating an identifier of the second server with the first login state information;

receiving, by the second server from a device, an application access request for the second service;

determining, by the second server, that an identifier information of the device sending the application access request matches the device identifier information of the terminal associated with the second login state information; and

in response, returning, by the second server, an application access response to the terminal.

12. The computer-implemented system of claim 11 , wherein the device identifier information is generated based on terminal information received from the terminal, and the terminal information includes at least one of terminal internal protocol (IP) address, terminal media access control (MAC) address, terminal subscriber identity module (SIM) card number, or terminal Universal Integrated Circuit Card (UICC) number.

13. The computer-implemented system of claim 11 , wherein the device identifier information is calculated using an MD5 algorithm.

14. The computer-implemented system of claim 11 , the operations further comprise:

receiving, at the first server and from the second server, a validity query;

determining, by the first server, whether the terminal has a valid login state with the first server; and

transmitting, by the first server, a validity response to the second server, wherein the validity response indicates whether the terminal has the valid login state with the first server.

15. The computer-implemented system of claim 11 , wherein the first login state information includes user information associated with the first login request.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 10, 2020
From: ADVANTAGEOUS NEW TECHNOLOGIES CO., LTD.
To: ADVANCED NEW TECHNOLOGIES CO., LTD.
Reel/Frame 053754/0625 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 31, 2020
From: ALIBABA GROUP HOLDING LIMITED
To: ADVANTAGEOUS NEW TECHNOLOGIES CO., LTD.
Reel/Frame 053743/0464 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 23, 2020
From: ZHOU, ZHIZHANG
To: ALIBABA GROUP HOLDING LIMITED
Reel/Frame 053010/0780 →
Priority Claims (1)
CN 2015 1 0239796 · May 12, 2015 · national
Continuity (3)
Continuation 15809780 · Nov 10, 2017
Continuation PCTCN2016079555 · Apr 18, 2016
Related Publication 20200287886A1 · Sep 10, 2020