IP Library Granted Patent US 12,659,312
Granted Patent B2
US 12,659,312 · App. 18/375,246 · Granted Jun 16, 2026

Authentication requests

Inventor: Timofei Gapakov (Kitchener, CA)
Assignee: DIGITAL FIRST HOLDINGS LLC
H04L63/0876G06Q20/1085H04L63/0807H04L63/0861H04L63/107H04L63/108H04L2463/082
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,659,312
App. No.
18/375,246
Granted
Jun 16, 2026
Kind
B2
Abstract

A method and a communication network are disclosed. The method comprises detecting, by a computing device of a trusted computing system, an input event indicating that an individual at the computing device wishes to authenticate their identity, responsive to said detecting, determining, by the computing device, at least one property for an authentication request that enables an authentication provider module that is external to the trusted computing system to authenticate the identity of the individual independently of the trusted computing system, and responsive to said determining, generating, by the computing device, the authentication request, wherein the authentication request comprises data indicative of said at least one property.

Claims (52)

1 . A computer-implemented method for generating an authentication request for authenticating an identity of an individual, the method comprising:

detecting, by a computing device of a trusted computing system, an input event indicating that an individual at the computing device wishes to authenticate their identity;

responsive to said detecting, determining, by the computing device, at least one property for an authentication request for use by an authentication provider module on a non-trusted computing system that is coupled to a separate mobile device of the individual and to the trusted computing system, the authentication provider module performing authentication of the identity of the individual independently of the trusted computing system; and

responsive to said determining, generating, by the computing device, the authentication request, wherein the authentication request comprises data indicative of said at least one property.

2 . The method as claimed in claim 1 , further comprising:

determining a request identifier for the authentication request as one property of said at least one property.

3 . The method as claimed in claim 2 , further comprising:

determining the request identifier by receiving the request identifier from a server of the trusted computing system.

4 . The method as claimed in claim 1 , further comprising:

determining a terminal identifier of the computing device as one property of said at least one property.

5 . The method as claimed in claim 4 , further comprising:

determining the terminal identifier by querying a memory of the computing device for the terminal identifier.

6 . The method as claimed in claim 1 , further comprising:

determining a date and time of expiry for the authentication request as one property of said at least one property.

7 . The method as claimed in claim 6 , further comprising:

determining the date and time of expiry as a predetermined time period after generating the authentication request.

8 . The method as claimed in claim 1 , further comprising:

determining a customer identifier for the authentication request as one property of said at least one property.

9 . The method as claimed in claim 8 , further comprising:

determining the customer identifier responsive to inputting information associated with the individual into a user interface of the computing device.

10 . The method as claimed in claim 1 , further comprising:

determining an authentication provider module identifier as one property of said at least one property.

11 . The method as claimed in claim 10 , further comprising:

determining the authentication provider module identifier responsive to inputting an indication of a selected authentication provider module into a user interface of the computing device.

12 . The method as claimed in claim 1 , further comprising:

determining at least one required attribute as one property of said at least one property.

13 . The method as claimed in claim 12 , further comprising:

determining the at least one required attribute as one or more of:

the authentication provider module is provided by a same entity as the trusted computing system;

the authentication provider module requires a minimum password difficulty for authentication of the identity of the individual;

the authentication provider module is able to perform multi-factor authentication of the identity of the individual; and

the authentication provider module is able to provide geolocation information for the individual.

14 . The method as claimed in claim 12 , further comprising:

determining the at least one required attribute based on a type of transaction being performed at the computing device and/or a type of the computing device.

15 . The method as claimed in claim 1 , further comprising:

determining a minimum required trust level score as one property of said at least one property.

16 . The method as claimed in claim 1 , further comprising:

determining at least one required action to be performed by the authentication provider module during authentication of the identity of the individual as one property of said at least one property.

17 . The method as claimed in claim 16 , further comprising:

determining the at least one required action as one or more of:

the authentication provider module must require input of a password; and

the authentication provider module must perform multi-factor authentication.

18 . The method as claimed in claim 1 , further comprising:

detecting the input event comprises receiving a selection by the individual or a bank teller on a user interface of the computing device.

19 . A communication network, comprising:

a trusted computing system comprising a computing device;

a non-trusted computing system comprising an authentication provider module executing on a computing device that is coupled to a separate mobile device of the individual and to the trusted computing system, the authentication provider module configured to perform authentication of an identity of the individual independently of the trusted computing system;

wherein the computing device is configured to:

detect an input event indicating that an individual at the computing device wishes to authenticate their identity;

determine at least one property for an authentication request for use by the authentication provider module in authenticating the identity of the individual independently of the trusted computing system; and

generate the authentication request, wherein the authentication request comprises data indicative of said at least one property.

20 . The communication network as claimed in claim 19 , wherein the computing device is an Automated Teller Machine or Self-Service Terminal or kiosk or is a desktop computer, laptop, or mobile device operated by a bank teller.

Assignments (6)
RELEASE OF SECURITY INTEREST Recorded Sep 30, 2024
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: NCR VOYIX CORPORATION (F/K/A NCR CORPORATION)
Reel/Frame 069037/0952 →
SECURITY INTEREST Recorded Sep 30, 2024
From: DIGITAL FIRST HOLDINGS LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 069083/0202 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 25, 2024
From: NCR VOYIX CORPORATION
To: DIGITAL FIRST HOLDINGS LLC
Reel/Frame 068695/0592 →
CHANGE OF NAME Recorded Feb 29, 2024
From: NCR CORPORATION
To: NCR VOYIX CORPORATION
Reel/Frame 066602/0539 →
SECURITY INTEREST Recorded Oct 25, 2023
From: NCR VOYIX CORPORATION
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 065346/0168 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 2, 2023
From: GAPAKOV, TIMOFEI
To: NCR CORPORATION
Reel/Frame 065097/0058 →