IP Library › Granted Patent US 9,456,345
Granted Patent B2
US 9,456,345 · App. 14/455,404 · Granted Sep 27, 2016

Device authentication techniques

Inventors: Rui Maximo (Issaquah, WA); Dawson Yee (Bellevue, WA); Gurdeep S Pall (Sammamish, WA); Roy Kuntz (Kirkland, WA)
Assignee: MICROSOFT TECHNOLOGY LICENSING, LLC
H04W12/06H04L63/083H04M1/673H04L63/0823H04W88/02
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,456,345
App. No.
14/455,404
Granted
Sep 27, 2016
Kind
B2
Abstract

Techniques are provided for authenticating a phone or other device for a user. A phone or other device is provided to the user. A personal identification number is provided to the user. The personal identification number is used to authenticate the phone or other device in the network for the user.

Claims (35)

1. A method, comprising:

accessing a server using authentication information;

processing a personal identification number from the server over a secure communications channel over the network, without using a phone;

communicating the personal identification number from the phone to the server; and

using the personal identification number to authenticate the phone in a network.

2. The method of claim 1 further comprising processing a network address to identify the phone in a network.

3. The method of claim 1 , further comprising:

processing the authentication information for logging onto the server, wherein the authentication information includes a username and password.

4. The method of claim 3 , further comprising:

communicating said personal identification number to said phone, wherein the personal identification number has a predetermined lifespan of validity for use in connection with authenticating the phone.

5. The method of claim 4 , wherein said personal identification number is transmitted to said phone using a wireless connection or using audio tones.

6. The method of claim 5 , wherein said wireless connection includes at least one of: an RF link, an IR link, and a magnetic coupling link.

7. The method of claim 4 , wherein said personal identification number is in a bar-coded form which is read using a reader at said phone.

8. A method, comprising:

accessing a server using a network address;

processing a personal identification number from the server over a secure communications channel over the network, without using the phone;

communicating the personal identification number from the phone at the server; and

using the personal identification number at the server to authenticate the phone in a network.

9. The method of claim 8 , wherein the network address designates a location on the server to be used in connection with configuring and authenticating the phone.

10. The method of claim 8 , further comprising:

hashing, by said phone, said personal identification number entered at said phone generating a first hash value; and

hashing, by said server, a copy of said personal identification number as maintained at said server generating a second hash value.

11. The method of claim 10 , further comprising:

comparing, by said server, said first and second hash values;

if said first and second hash values do not match, not successfully completing authentication processing for the phone for the user.

12. The method of claim 11 , wherein if said first and second hash values match, a connection is established between said phone and said server and said phone sends a public key to the server.

13. The method of claim 12 , wherein said server obtains a digital certificate in accordance with said public key and transmits said digital certificate and identification information to log onto a communications server to the device.

14. The method of claim 13 , wherein said device is authenticated to said communications server in accordance with said digital certificate and identification information.

15. The method of claim 8 further comprising processing the network address from a network server.

16. An apparatus:

a communications module operative to access a server using a network address or authentication information, process a personal identification number from the server over a secure communications channel over the network, without using a phone, and communicate the personal identification number to the phone for use in authenticating the phone in the network.

17. The apparatus of claim 16 , wherein the communications module is further operative to process the authentication information for logging onto the server, wherein the authentication information includes a username and password.

18. The apparatus of claim 16 , wherein the communications module is further operative to communicate said personal identification number to said phone, wherein the personal identification number has a predetermined lifespan of validity for use in connection with authenticating the phone.

19. The apparatus of claim 16 , wherein the communications module is further operative to transmit said personal identification number to said phone using a wireless connection or using audio tones.

20. The apparatus of claim 16 , wherein said personal identification number is in a bar-coded form which is read using a reader at said phone.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 9, 2015
From: MICROSOFT CORPORATION
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 039025/0454 →
Continuity (2)
Continuation 11451183 · Jun 12, 2006
Related Publication 20140357233A1 · Dec 4, 2014