IP Library Granted Patent US 9,628,477
Granted Patent B2
US 9,628,477 · App. 14/581,659 · Granted Apr 18, 2017

User profile selection using contextual authentication

Inventors: Ned M. Smith (Beaverton, OR); Hannah L. Scurfield (London, GB); Nathan Heldt-Sheller (Portland, OR); Micah J. Sheller (Hillsboro, OR); Nathaniel J. Goss (Portland, OR); Kevin C. Wells (Portland, OR); Sindhu Pandian (Portland, OR)
Assignee: Intel Corporation
H04L63/0861G06F21/316G06N99/005
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,628,477
App. No.
14/581,659
Granted
Apr 18, 2017
Kind
B2
Abstract

In embodiments, apparatuses, methods and storage media (transitory and non-transitory) are described that are associated with user profile selection using contextual authentication. In various embodiments, a first user of a computing device may be authenticated and have an access control state corresponding to a first user profile established, the computing device may select a second user profile based at least in part a changed user characteristic, and the computing device may present a resource based at least in part on the second user profile. In various embodiments, the computing device may include a sensor and a user profile may be selected based at least in part on an output of the sensor and a previously stored template generated by a machine learning classifier.

Claims (44)

1. A computing device comprising:

one or more processors;

a memory coupled with the one or more processors;

a login module operated by the one or more processors to authenticate a first user of the device and establish a first access control state corresponding to a first user profile associated with the first user and to authenticate a second user of the device and establish a second access control state corresponding to a second user profile associated with the second user;

a contextual authentication module operated by the one or more processors to select between the first and second user profiles based at least in part on a changed user characteristic;

a presentation module operated by the one or more processors to present a resource based at least in part on the second user profile; and

a motion sensor, wherein

the contextual authentication module comprises a profile selection module operated by the one or more processors to select between the first and second user profiles based at least in part on an output of the motion sensor and previously stored first and second templates generated by a machine learning classifier in association with the respective first and second users, and

the profile selection module comprises a biometric machine learning classifier, wherein the profile selection module is to perform a biometric information classification of the output of the motion sensor and select between the first and second user profiles based at least in part on the biometric information classification and the previously stored first and second templates.

2. The computing device of claim 1 , wherein the login module is to authenticate the first and second users of the device based at least in part on an active authentication factor.

3. The computing device of claim 1 , wherein the computing device further comprises:

a user proximity module operated by the one or more processors to determine a proximity status associated with the first user, wherein an access control module is operated by the one or more processors to terminate the second access control state if the proximity status reaches a predetermined value.

4. The computing device of claim 1 , further comprising a trusted execution environment operated by one of the processors to host operation of the contextual authentication module.

5. The computing device of claim 1 , wherein the contextual authentication module is operated by the one or more processors to select a delegate profile as the second user profile.

6. The computing device of claim 1 , wherein the computing device is a tablet computing device, wherein the contextual authentication module comprises a profile selection module operated by the one or more processors in a trusted execution environment to select between the first and second user profiles based at least in part on the previously stored first and second templates generated by the biometric machine learning classifier.

7. A computer implemented method comprising:

authenticating, by a computing device, a first user of the device;

establishing, by the computing device, a first access control state corresponding to a first user profile associated with the first user;

selecting, by the computing device, a second user profile associated with a second user of the device based at least in part on a changed user characteristic, wherein selecting the second user profile includes:

receiving, by the computing device, a motion sensor output;

performing a biometric classification of the motion sensor output to generate biometric sample data; and

selecting, by the computing device, the second user profile based at least in part on the biometric sample data generated from the motion sensor output and a previously stored biometric template generated by a machine learning classifier in association with the second user; and

presenting, by the computing device, a resource based at least in part on the second user profile.

8. The method according to claim 7 , wherein authenticating, by the computing device, the first user of the device is based at least in part on an active authentication factor.

9. The method according to claim 7 , further comprising:

establishing, by the computing device, a second access control state based at least in part on the second user profile;

determining, by the computing device, a proximity status associated with the first user; and

terminating, by the computing device, the second access control state if the proximity status reaches a predetermined value.

10. The method according to claim 7 , wherein selecting, by the computing device, the second user profile based at least in part on the changed user characteristic is performed in a trusted execution environment.

11. The method according to claim 7 , wherein the second user profile is a delegate profile.

12. The method according to claim 7 , wherein the computing device is a tablet computing device, wherein selecting, by the computing device, the second user profile based at least in part on the changed user characteristic comprises selecting in a trusted execution environment, by the computing device, a second user profile based at least in part on a previously stored template generated by a machine learning classifier.

13. At least one non-transitory computer-readable medium comprising instructions stored thereon that, in response to execution of the instructions by a computing device, cause the computing device to:

authenticate a first user of the device;

establish a first access control state corresponding to a first user profile associated with the first user;

select a second user profile associated with a second user of the device based at least in part on a changed user characteristic, including to perform a biometric classification of a motion sensor output to generate biometric sample data and to select a second user profile based at least in part on the biometric sample data and a previously stored template generated by a biometric machine learning classifier in association with the second user; and

present a resource based at least in part on the second user profile.

14. The at least one non-transitory computer-readable medium of claim 13 , wherein the computing device is caused to authenticate the first user of the device based at least in part on an active authentication factor.

15. The at least one non-transitory computer-readable medium of claim 13 , wherein the computing device is further caused to:

establish a second access control state based at least in part on the second user profile;

determine a proximity status associated with the first user; and

terminate the second access control state if the proximity status reaches a predetermined value.

16. The at least one non-transitory computer-readable medium of claim 13 , wherein the computing device is further caused to select the second user profile in a trusted execution environment.

17. The at least one non-transitory computer-readable medium of claim 13 , wherein the computing device is further caused to select a delegate profile as the second user profile.

18. The at least one non-transitory computer-readable medium of claim 13 , wherein the computing device is a tablet computing device, wherein the tablet computing device is caused to select the second user profile in a trusted execution environment of the tablet computing device based at least in part on a previously stored template generated by a machine learning classifier.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 18, 2022
From: INTEL CORPORATION
To: KIA CORPORATION; HYUNDAI MOTOR COMPANY
Reel/Frame 058685/0061 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 13, 2015
From: SMITH, NED M.; SCURFIELD, HANNAH L.; HELDT-SHELLER, NATHAN; SHELLER, MICAH J.; GOSS, NATHANIEL J.; WELLS, KEVIN C.; PANDIAN, SINDHU
To: INTEL CORPORATION
Reel/Frame 034958/0962 →
Continuity (1)
Related Publication 20160182502A1 · Jun 23, 2016