IP Library Granted Patent US 7,934,258
Granted Patent B2
US 7,934,258 · App. 11/893,954 · Granted Apr 26, 2011

System and method for remote authentication security management

Assignee: Informod Control Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,934,258
App. No.
11/893,954
Granted
Apr 26, 2011
Kind
B2
Abstract

An information processing system for remote access comprising a network access server and an authentication server is augmented with the ability to provide a simulated authentication process for authentication requests from attackers which do not correspond to authorized user names. Attackers whose requests form a password guessing attack for a user identity selected from a set of reject user names are redirected to a honeypot server.

Claims (10)

1. A method of managing an authentication request from an attacker, said method comprising;

(a) transmitting said authentication request from a supplicant to a network access server,

(b) transmitting said authentication request from said network access server to an authentication server,

(c) determining whether to add a failure message to a log by validating that a user name from said authentication request is a member of a set of names of known users and said credential from said authentication request does not match a password corresponding to said member of said set of names of known users,

(d) determining whether to connect said supplicant to a honeypot server by validating that said user name from said authentication request is a member of a set of names of reject users and said credential from said authentication request matches a password corresponding to said member of said set of names of reject users.

2. A non-transitory computer readable medium comprising a computer program product implemented as software on a computer for managing an authentication request from an attacker, said computer program product comprising:

(a) instructions for receiving at a network access server said authentication request from a supplicant,

(b) instructions for transmitting said authentication request from said network access server to an authentication server,

(c) instructions for determining whether to add a failure message to a log by validating that a user name from said authentication request is a member of a set of names of known users and said credential from said authentication request does not match a password corresponding to said member of said set of names of known users,

(d) instructions for determining whether to connect said supplicant to a honeypot server by validating that said user name from said authentication request is a member of a set of names of reject users and said credential from said authentication request matches a password corresponding to said member of said set of names of reject users.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 13, 2011
From: WAHL, MARK
To: INFORMED CONTROL INC.
Reel/Frame 025942/0893 →
Continuity (2)
Provisional Application 60838520 · Aug 17, 2006
Related Publication 20080046989A1 · Feb 21, 2008