IP Library Granted Patent US 12,475,979
Granted Patent B2
US 12,475,979 · App. 18/500,205 · Granted Nov 18, 2025

Strong authentication via distributed stations

Inventor: Meinhard Dieter Ullrich (Lexington, MA)
Assignee: IMPRIVATA, INC.
G16H10/60G06F3/0482G16H40/20G16H40/67G16Z99/00H04L63/08H04L67/12H04L67/52H04L67/535H04W4/023H04W4/029H04W4/33H04W64/00H04W12/06H04W12/63H04W60/04
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,475,979
App. No.
18/500,205
Granted
Nov 18, 2025
Kind
B2
Abstract

In various embodiments, authentication stations are distributed within a facility, particularly in spaces where mobile devices are predominantly used—e.g., a hospital's emergency department. Each such station includes a series of authentication devices. Mobile device may run applications for locating the nearest such station and, in some embodiments, pair wirelessly with the station so that authentication thereon will accord a user access to the desired resource via a mobile device.

Claims (35)

1 . A method of authentication and log-on to access a secure resource via a computer network, the method comprising the steps of:

sending, via a computational device, an access request to a secure resource from a user via a network;

receiving, from the secure resource, a user authentication requirement involving an authentication modality in response to the access request, wherein the computational device does not support the authentication modality and cannot be solely utilized to satisfy the user authentication requirement;

locating, via a mobile device, an authentication station supporting the authentication modality; and

displaying, on the mobile device, a location of the authentication station.

2 . The method of claim 1 , wherein displaying the location of the authentication station comprises displaying, on the mobile device, a map showing the location of the authentication station.

3 . The method of claim 2 , wherein the map shows a current location of the mobile device.

4 . The method of claim 2 , wherein the map shows a current location of the computational device.

5 . The method of claim 1 , wherein the mobile device is the computational device.

6 . The method of claim 1 , wherein the mobile device is different from the computational device.

7 . The method of claim 6 , wherein the mobile device is in wireless communication with the computational device.

8 . The method of claim 1 , further comprising claiming the authentication station via the mobile device, thereby preventing use thereof except by the user sending the access request to the secure resource.

9 . The method of claim 1 , further comprising establishing a secure connection between the mobile device and the authentication station.

10 . The method of claim 1 , further comprising accessing the secure resource via the computational device after authenticating via the authentication modality at the authentication station.

11 . A mobile device for facilitating authentication for a user to access a secure resource via a computer network using an authentication modality, wherein connected to the computer network are a plurality of authentication stations, an authentication server different from the authentication stations, and a computational device (i) configured for requesting access to the secure resource via the computer network and (ii) lacking the authentication modality, the mobile device comprising:

a processor;

a display; and

a memory storing an application, the application, when executed by the processor as a running process after the computational device requests access to the secure resource, causing the mobile device to:

identify one or more of the authentication stations supporting the authentication modality and configured to receive authentication credentials from the user using the authentication modality in response to the computational device requesting accessing to the secure resource, and

show, on the display, a location of at least one said identified authentication station.

12 . The mobile device of claim 11 , wherein the application causes the mobile device to show the location of the at least one said identified authentication station by showing, on the display, a map of the location.

13 . The mobile device of claim 12 , wherein the map shows a current location of the mobile device.

14 . The mobile device of claim 12 , wherein the map shows a current location of the computational device.

15 . The mobile device of claim 12 , wherein the application causes the mobile device to claim at least one said identified authentication station, thereby preventing use thereof except by the user.

16 . The mobile device of claim 12 , wherein the application causes the mobile device to establish a secure connection between the mobile device and the at least one said identified authentication station.

17 . A mobile device for facilitating authentication for a user to access a secure resource, using an authentication modality, via a computer network connected a plurality of authentication stations and an authentication server different from the authentication stations, wherein the mobile device lacks the authentication modality and is configured for requesting access to the secure resource via the computer network, the mobile device comprising:

a processor;

a display; and

a memory storing an application, the application, when executed by the processor as a running process after the user requests access to the secure resource, causing the mobile device to:

identify one or more of the authentication stations supporting the authentication modality and configured to receive authentication credentials from the user using the authentication modality in response to the user requesting accessing to the secure resource, and

show, on the display, a location of at least one said identified authentication station.

18 . The mobile device of claim 17 , wherein the application causes the mobile device to show the location of the at least one said identified authentication station by showing, on the display, a map of the location.

19 . The mobile device of claim 18 , wherein the map shows a current location of the mobile device.

20 . The mobile device of claim 17 , wherein the application causes the mobile device to claim at least one said identified authentication station, thereby preventing use thereof except by the user.

21 . The mobile device of claim 17 , wherein the application causes the mobile device to establish a secure connection between the mobile device and the at least one said identified authentication station.

Assignments (4)
RELEASE OF SECURITY INTEREST IN INTELLECTUAL PROPERTY COLLATERAL AT REEL/FRAME NO. 68553/0806 Recorded Sep 18, 2024
From: BLUE OWL CAPITAL CORPORATION (FORMERLY KNOWN AS OWL ROCK CAPITAL CORPORATION), AS COLLATERAL AGENT
To: IMPRIVATA, INC.
Reel/Frame 068981/0790 →
INTELLECTUAL PROPERTY AGREEMENT SUPPLEMENT (1L) Recorded Aug 12, 2024
From: IMPRIVATA, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 068551/0623 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT SUPPLEMENT (2L) Recorded Aug 12, 2024
From: IMPRIVATA, INC.
To: BLUE OWL CAPITAL CORPORATION, AS COLLATERAL AGENT
Reel/Frame 068553/0806 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 4, 2024
From: ULLRICH, MEINHARD DIETER
To: IMPRIVATA, INC.
Reel/Frame 066016/0150 →
Continuity (7)
Continuation 17712379 · Apr 4, 2022
Continuation 16834117 · Mar 30, 2020
Continuation 16108736 · Aug 22, 2018
Continuation 14945671 · Nov 19, 2015
Provisional Application 62183793 · Jun 24, 2015
Provisional Application 62081820 · Nov 19, 2014
Related Publication 20240087693A1 · Mar 14, 2024
References Cited (31)
US 5742233A · Hoffman · 1998 [cited by examiner]
US 6928558B1 · Allahwerdi et al. · 2005 [cited by applicant]
US 8295898B2 · Ashfield · 2012 [cited by examiner]
US 8321913B2 · Turnbull · 2012 [cited by examiner]
US 8352739B2 · Park et al. · 2013 [cited by applicant]
US 8423772B2 · Lee et al. · 2013 [cited by applicant]
US 8677125B2 · Brok et al. · 2014 [cited by applicant]
US 8839378B2 · Touray et al. · 2014 [cited by applicant]
US 8965404B2 · Karonis, III · 2015 [cited by examiner]
US 10078425B2 · Ullrich · 2018 [cited by applicant]
US 10642452B2 · Ullrich · 2020 [cited by applicant]
US 11328799B2 · Ullrich · 2022 [cited by applicant]
US 20080010207A1 · Yanagihara et al. · 2008 [cited by applicant]
US 20080059372A1 · Lee · 2008 [cited by examiner]
US 20100017608A1 · Larsen · 2010 [cited by applicant]
US 20100325435A1 · Park et al. · 2010 [cited by applicant]
US 20110218730A1 · Rider · 2011 [cited by examiner]
US 20110252464A1 · Sanjeev · 2011 [cited by examiner]
US 20120184242A1 · Li et al. · 2012 [cited by applicant]
US 20130297507A1 · Mechaley et al. · 2013 [cited by applicant]
US 20140095864A1 · Dasgupta et al. · 2014 [cited by applicant]
US 20140129379A1 · Tryba · 2014 [cited by applicant]
US 20140157381A1 · Disraeli · 2014 [cited by applicant]
US 20140289790A1 · Wilson · 2014 [cited by applicant]
US 20150046969A1 · Abuelsaad et al. · 2015 [cited by applicant]
US 20150143485A1 · Tamura · 2015 [cited by applicant]
US 20150350140A1 · Garcia et al. · 2015 [cited by applicant]
US 20160142394A1 · Ullrich · 2016 [cited by applicant]
US 20190056842A1 · Ullrich · 2019 [cited by applicant]
US 20200186423A1 · Torres · 2020 [cited by examiner]
US 20200301551A1 · Ullrich · 2020 [cited by applicant]