IP Library Granted Patent US 10,057,251
Granted Patent B2
US 10,057,251 · App. 15/467,476 · Granted Aug 21, 2018

Provisioning account credentials via a trusted channel

Inventors: William Alexander Strand (Issaquah, WA); Jesper Mikael Johansson (Redmond, WA); Luan Khai Nguyen (Auburn, WA)
Assignee: Amazon Technologies, Inc.
H04L63/083
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,057,251
App. No.
15/467,476
Granted
Aug 21, 2018
Kind
B2
Abstract

Disclosed are various embodiments for provisioning account credentials via a trusted channel. An account configuration manager automatically determines a credential reset format that is associated with an account. The account configuration manager then automatically requests a security credential reset for the account using the credential reset format. A security credential communication is received via a trusted channel of communication that is linked to the account for reset purposes. The account configuration manager parses the security credential communication to determine a security credential for the account.

Claims (35)

1. A non-transitory computer-readable medium embodying a program executable in at least one computing device, wherein when executed the program causes the at least one computing device to at least:

automatically determine a credential reset format that is associated with an account;

automatically request a security credential reset for the account using the credential reset format;

receive a security credential communication via an email account that is linked to the account for reset purposes; and

parse the security credential communication to determine a security credential for the account.

2. The non-transitory computer-readable medium of claim 1 , wherein automatically determining the credential reset format further comprises requesting the credential reset format from a service provider corresponding to the account.

3. The non-transitory computer-readable medium of claim 1 , wherein automatically determining the credential reset format further comprises requesting the credential reset format from a third-party server.

4. The non-transitory computer-readable medium of claim 1 , wherein automatically determining the credential reset format further comprises selecting the credential reset format from a plurality of credential reset formats bundled with the program.

5. A system, comprising:

at least one computing device; and

an account configuration manager executable in the at least one computing device, wherein when executed the account configuration manager causes the at least one computing device to at least:

automatically determine a credential reset format that is associated with an account;

automatically request a security credential reset for the account using the credential reset format;

receive a security credential communication via a trusted channel of communication that is linked to the account for reset purposes; and

parse the security credential communication to determine a security credential for the account.

6. The system of claim 5 , wherein the credential reset format defines a uniform resource locator (URL) and a format for specifying an identifier for the account.

7. The system of claim 5 , wherein the credential reset format defines a format for providing respective answers to one or more knowledge-based questions.

8. The system of claim 5 , wherein the security credential communication comprises an email message.

9. The system of claim 5 , wherein the security credential communication is parsed based at least in part on the credential reset format.

10. The system of claim 5 , wherein when executed the account configuration manager further causes the at least one computing device to at least request the credential reset format from a service provider associated with the account.

11. The system of claim 5 , wherein when executed the account configuration manager further causes the at least one computing device to at least automatically determine the credential reset format by automatically attempting to use individual ones of a plurality of different credential reset formats to request the security credential reset.

12. The system of claim 5 , wherein when executed the account configuration manager further causes the at least one computing device to at least select the credential reset format from a plurality of credential reset formats bundled with the account configuration manager.

13. A method, comprising:

automatically requesting, via at least one of one or more computing devices, a security credential reset for an account using individual ones of a plurality of different credential reset formats until a request for the security credential reset is successful;

receiving, via at least one of the one or more computing devices, a security credential communication via a trusted channel of communication that is linked to the account for reset purposes; and

parsing, via at least one of the one or more computing devices, the security credential communication to determine a security credential for the account.

14. The method of claim 13 , further comprising receiving, via at least one of the one or more computing devices, metadata included in the security credential communication indicating a communication format employed for the security credential communication.

15. The method of claim 13 , further comprising parsing, via at least one of the one or more computing devices, a communication from a credential management endpoint using one or more of the plurality of different credential reset formats to determine a type of knowledge-based question being asked to complete the security credential reset.

16. The method of claim 13 , further comprising receiving, via at least one of the one or more computing devices, feedback from a credential management endpoint associated with the account indicating whether the request for the security credential reset is successful.

17. The method of claim 13 , further comprising loading, via at least one of the one or more computing devices, the individual ones of the plurality of different credential reset formats from a local data store.

18. The method of claim 13 , further comprising receiving, via at least one of the one or more computing devices, the individual ones of the plurality of different credential reset formats from a third-party server.

19. The method of claim 13 , wherein the security credential comprises a temporary password.

20. The method of claim 13 , further comprising:

automatically generating, via at least one of the one or more computing devices, a new security credential for the account; and

automatically establishing, via at least one of the one or more computing devices, the new security credential for the account using the security credential.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 6, 2017
From: STRAND, WILLIAM ALEXANDER; JOHANSSON, JESPER MIKAEL; NGUYEN, LUAN KHAI
To: AMAZON TECHNOLOGIES, INC.
Reel/Frame 041885/0668 →
Continuity (3)
Continuation 14713291 · May 15, 2015
Continuation 13923830 · Jun 21, 2013
Related Publication 20170195314A1 · Jul 6, 2017
Cited By (1)
US 12,225,005