IP Library Granted Patent US 12,355,766
Granted Patent B2
US 12,355,766 · App. 18/433,349 · Granted Jul 8, 2025

Secure authentication and execution of applications on shared devices

Inventors: James P. Gorski (Penfield, NY); Donald L. Wegeng (Fairport, NY); Emily Katherine Anzalone (Rochester, NY)
Assignee: Xerox Corporation
H04L63/0876H04L61/4523H04L63/083H04L63/102
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,355,766
App. No.
18/433,349
Granted
Jul 8, 2025
Kind
B2
Abstract

A method is disclosed. For example, the method executed by a processor of a shared device includes receiving an identification of a user, connecting to a remote server that stores authentication modules and applications, requesting an authentication module and an application stored on the remote server that is associated with the identification of the user, storing the authentication module and the application temporarily on a non-resident memory of the shared device, and executing the application in response to authentication of the user based on log-in information that was received via the authentication module.

Claims (51)

1. A method, comprising:

receiving, via a processor of a shared device, an identification of a user;

obtaining, via the processor, an authentication module and an application that are associated with the identification of the user, wherein the authentication module and the application are stored on a remote server;

authenticating, via the processor, the user via the authentication module; and

executing, via the processor, the application from a non-resident memory of the shared device in response to the user being authenticated.

2. The method of claim 1 , further comprising:

detecting, via the processor, a log out of the user; and

deleting, via the processor, the authentication module and the application from the non-resident memory of the shared device.

3. The method of claim 2 , further comprising:

receiving, via the processor, a second identification associated with a second user;

obtaining, via the processor, a second authentication module and a second application that are associated with the second identification of the second user, wherein the second authentication module is different from the authentication module associated with the user, wherein the second authentication module and the second application are stored on the remote server;

authenticating, via the processor, the second user via the second authentication module; and

executing, via the processor, the second application from the non-resident memory of the shared device in response to the second user being authenticated.

4. The method of claim 1 , wherein the identification of the user comprises a user name.

5. The method of claim 1 , wherein the identification of the user comprises an enterprise associated with an email extension of the identification.

6. The method of claim 1 , wherein the non-resident memory comprises a random access memory (RAM) of the shared device.

7. The method of claim 1 , wherein the shared device comprises a multi-function device.

8. The method of claim 1 , wherein the authentication module comprises a Kerberos authentication or a lightweight directory access protocol (LDAP) authentication.

9. The method of claim 1 , wherein the authentication module includes an authentication parameter to provide a hostname or a universal resource locator (URL) to an authentication service to provide login information.

10. The method of claim 1 , wherein the application comprises a suite of default applications associated with an enterprise that provides an email used as the identification of the user.

11. The method of claim 1 , wherein the application comprises a user selected application associated with the identification of the user.

12. An apparatus, comprising:

a non-resident memory;

a processor; and

a non-transitory computer-readable medium storing a plurality of instructions, which when executed by the processor, causes the processor to perform operations comprising:

receiving an identification of a user;

obtaining an authentication module and an application that are associated with the identification of the user, wherein the authentication module and the application are stored on a remote server;

authenticating the user via the authentication module; and

executing the application from the non-resident memory in response to the user being authenticated.

13. The apparatus of claim 12 , wherein the apparatus comprises a multi-function device (MFD).

14. The apparatus of claim 12 , wherein the non-resident memory comprises a random access memory (RAM).

15. The apparatus of claim 12 , wherein the plurality of instructions further cause the processor to perform further operations comprising:

detecting a log out of the user; and

deleting the authentication module and the application from the non-resident memory of the apparatus.

16. The apparatus of claim 12 , wherein the plurality of instructions further cause the processor to perform further operations comprising:

receiving a second identification associated with a second user;

obtaining a second authentication module and a second application that are associated with the second identification of the second user, wherein the second authentication module is different from the authentication module associated with the user, wherein the second authentication module and the second application are stored on the remote server;

authenticating the second user via the second authentication module; and

executing the second application from the non-resident memory of the apparatus in response to the second user being authenticated.

17. The apparatus of claim 12 , wherein the authentication module comprises a Kerberos authentication or a lightweight directory access protocol (LDAP) authentication.

18. The apparatus of claim 12 , wherein the authentication module includes an authentication parameter to provide a hostname or a universal resource locator (URL) to an authentication service to provide login information.

19. A non-transitory computer readable medium storing instructions, which when executed by a processor of a shared device, cause the processor to perform operations comprising:

receiving an identification of a user;

obtaining an authentication module and an application that are associated with the identification of the user, wherein the authentication module and the application are stored on a remote server;

authenticating the user via the authentication module; and

executing the application from a non-resident memory of the shared device in response to the user being authenticated.

20. The non-transitory computer readable medium of claim 19 , wherein the instructions when executed by the processor cause the processor to perform further operations comprising:

receiving a second identification associated with a second user;

obtaining a second authentication module and a second application that are associated with the second identification of the second user, wherein the second authentication module is different from the authentication module associated with the user, wherein the second authentication module and the second application are stored on the remote server;

authenticating the second user via the second authentication module; and

executing the second application from the non-resident memory of the shared device in response to the second user being authenticated.

Assignments (5)
SECOND LIEN NOTES PATENT SECURITY AGREEMENT Recorded Jul 2, 2025
From: XEROX CORPORATION
To: U.S. BANK TRUST COMPANY, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 071785/0550 →
FIRST LIEN NOTES PATENT SECURITY AGREEMENT Recorded Apr 11, 2025
From: XEROX CORPORATION
To: U.S. BANK TRUST COMPANY, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 070824/0001 →
SECURITY INTEREST Recorded Apr 11, 2025
From: XEROX CORPORATION
To: JEFFERIES FINANCE LLC, AS COLLATERAL AGENT
Reel/Frame 070821/0219 →
SECURITY INTEREST Recorded Apr 11, 2025
From: XEROX CORPORATION
To: CITIBANK, N.A., AS COLLATERAL AGENT
Reel/Frame 070821/0240 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 13, 2024
From: GORSKI, JAMES P.; WEGENG, DONALD L.; ANZALONE, EMILY KATHERINE
To: XEROX CORPORATION
Reel/Frame 066485/0501 →
Continuity (2)
Continuation 17479941 · Sep 20, 2021
Related Publication 20240244052A1 · Jul 18, 2024
References Cited (1)
US 20230198986A1 · Huang · 2023 [cited by examiner]