IP Library Granted Patent US 11,025,592
Granted Patent B2
US 11,025,592 · App. 16/593,504 · Granted Jun 1, 2021

System, method and computer-accessible medium for two-factor authentication during virtual private network sessions

Inventors: Austin Walters (Savoy, IL); Vincent Pham (Champaign, IL); Jeremy Goodsitt (Champaign, IL)
Assignee: CAPITAL ONE SERVICES, LLC
H04L63/0272H04L63/08H04L63/10H04W12/06H04W12/086H04W76/12H04L2463/082
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,025,592
App. No.
16/593,504
Granted
Jun 1, 2021
Kind
B2
Abstract

An exemplary system, method, and computer-accessible medium for authenticating a second device, can include initiating a first network connection between a server and a first device, initiating a second network connection between the server and the second device, and authenticating the second device based on the first network connection and the second network connection. Access to a network resource(s) can be granted to the second device based on the authentication. Access to the network resource(s) by the second device can be revoked if the first network connection is severed. The first network connection can be a first encrypted network connection and the second network connection can be a second encrypted network connection. The first network connection can be a first virtual private network (“VPN”) connection and the second network connection can be a second VPN connection.

Claims (48)

1. A non-transitory computer-accessible medium having stored thereon computer-executable instructions for authenticating a second device, wherein, when a computer arrangement executes the instructions, the computer arrangement is configured to perform procedures comprising:

initiating a first virtual private network (VPN) connection between a server and a first device;

granting access to a first set of network resources to the first device based on the first VPN connection;

initiating a second VPN connection between the server and the second device based on the first VPN connection;

authenticating the second device based on the first VPN connection and the second VPN connection;

granting access to a second set of network resources to the first device based on the first VPN connection and the second VPN connection;

granting access to at least one third network resource to the second device based on the authentication of the second device; and

revoking access to the at least one third network resource by the second device when the first VPN connection is severed.

2. The computer-accessible medium of claim 1 , wherein the first VPN connection is a first encrypted network connection and the second VPN connection is a second encrypted network connection.

3. The computer-accessible medium of claim 1 , wherein the computer arrangement is configured to revoke access to the second set of network resources by the first device if the second VPN connection is severed.

4. The computer-accessible medium of claim 1 , wherein the computer arrangement is configured to initiate the second VPN connection over the first VPN connection.

5. The computer-accessible medium of claim 1 , wherein the second set of network resources comprises the first set of network resources.

6. The computer-accessible medium of claim 1 , wherein the first device includes one of (i) a mobile phone, (ii) a modem, (iii) a router, or (iv) a network access device.

7. The computer-accessible medium of claim 1 , wherein the second device includes one of (i) a mobile phone, (ii) a laptop, or (iii) a network connected device.

8. The computer-accessible medium of claim 1 , wherein the computer arrangement is further configured to:

initiate a third VPN connection between the server and a third device; and

authenticate the third device based on the first VPN connection and the third VPN connection.

9. The computer-accessible medium of claim 8 , wherein the computer arrangement is configured to initiate the third VPN connection over the first VPN connection.

10. A system for multifactor authentication, comprising:

a server;

a first device connected to the server over a first virtual private network (VPN) connection; and

a second device connected to the server over a second VPN connection based on the first VPN connection;

wherein the server is configured to:

grant access to a first set of network resources to the first device based on the first VPN connection;

authenticate the second device based on the first VPN connection and the second VPN connection;

grant access to a second set of network resources to the first device based on the first VPN connection and the second VPN connection;

grant access to at least one third network resource to the second device based on the authentication of the second device; and

revoke access to the at least one third network resource by the second device when the first VPN connection is severed.

11. The system of claim 10 , wherein the server is further configured to revoke access to the second set of network resources by the first device if the second VPN connection is severed.

12. The system of claim 10 , wherein the second VPN connection is initiated over the first VPN connection.

13. The system of claim 10 , wherein the first device includes one of (i) a mobile phone, (ii) a modem, (iii) a router, or (iv) a network access device.

14. The system of claim 10 , wherein the second device includes one of (i) a mobile phone, (ii) a laptop, or (iii) a network connected device.

15. The system of claim 10 , further comprising a third device connected to the server over a third VPN connection, wherein the third VPN connection is initiated over the first VPN connection, and wherein the server is configured to grant access to a fourth set of network resources to the third device based on the first VPN connection and the third VPN connection.

16. A method for two factor authentication, comprising:

initiating a first virtual private network (VPN) connection between a first network device and a server;

granting by the server access to a first set of network resources on a network associated with the server to the first device based on the first VPN connection;

initiating a network connection between a second network device and the first network device;

initiating a second VPN connection between the second network device and the server over the first VPN connection;

granting by the server access to a second set of network resources on the network associated with the server to the first device based on the first VPN connection and the second VPN connection;

granting by the server access to a third set of network resources on the network associated with the server to the second network device based on the first VPN connection and the second VPN connection; and

revoking by the server access to the third set of network resources on the network associated with the server by the second network device when the first VPN connection is severed.

17. The method of claim 16 , further comprising:

initiating a third VPN connection between the server and a third network device over the first VPN connection; and

authenticating the third network device based on the first VPN connection and the third VPN connection.

18. The method of claim 17 , further comprising:

granting by the server access to a fourth set of network resources on the network associated with the server to the third network device based on the first VPN connection and the third VPN connection.

19. The method of claim 16 , wherein the first network device is a gateway, the gateway including one of (i) a mobile phone, (ii) a modem, (iii) a router, or (iv) a network access device.

20. The method of claim 16 , wherein the second network device includes one of (i) a mobile phone, (ii) a laptop, or (iii) a network connected device.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 4, 2019
From: WALTERS, AUSTIN; PHAM, VINCENT; GOODSITT, JEREMY
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 050628/0972 →
Continuity (1)
Related Publication 20210105254A1 · Apr 8, 2021