IP Library › Granted Patent US 12,299,111
Granted Patent B1
US 12,299,111 · App. 17/893,095 · Granted May 13, 2025

Setting an authorization level at enrollment

Inventors: Adam Evans Vancini (Concord, CA); Christopher Phillip Clausen (Novato, CA); Darrell L. Suen (San Ramon, CA)
Assignee: Wells Fargo Bank, N.A.
G06F21/45G06F21/335G06F2221/2113G06F2221/2117
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,299,111
App. No.
17/893,095
Granted
May 13, 2025
Kind
B1
Abstract

A device includes a processor coupled to a memory that stores instructions that when executed by the processor cause the processor to provide access to at least one of a product or a service via a digital channel; provide initial information to an authorizer via the digital channel; receive an enrollment token, the enrollment token including identifying information that identifies the device and defining a level of authorization with respect to the digital channel utilized by the device; provide the enrollment token to an institution computing system associated with an institution; and access a product or service provided by the institution based on the level of authorization defined by the enrollment token.

Claims (35)

1. A device, comprising:

a processor coupled to a memory that stores instructions that, when executed by the processor, cause the processor to:

provide access to at least one of a product or a service provided by an institution via a digital channel;

provide initiation information to an authorizer via the digital channel, wherein the initiation information is configured to identify a user of the device;

receive an enrollment token, the enrollment token including identifying information that identifies the device and defining a level of authorization specific to the digital channel utilized by the device and also based on the initiation information;

provide the enrollment token to an institution computing system associated with the institution; and

selectively control access to the product or the service by the device based on the level of authorization defined by the enrollment token.

2. The device of claim 1 , wherein the level of authorization defines a level of authentication of the user of the device, and wherein the enrollment token binds the user to the device via identifying information included in the enrollment token being placed on the device.

3. The device of claim 2 , wherein binding the user to the device includes receiving a cookie on the device, wherein the cookie includes at least a portion of the identifying information.

4. The device of claim 1 , wherein the level of authorization is one of a plurality of predefined authorization levels.

5. The device of claim 1 , wherein the digital channel is provided via an automated teller machine.

6. The device of claim 1 , wherein the service includes at least one of opening an account or processing a transaction.

7. The device of claim 1 , wherein the enrollment token is embedded in a code configured to be displayed on a display of the device.

8. A system, comprising:

a processor coupled to a memory that stores instructions that, when executed by the processor, cause the processor to:

provide initiation information to an authorizer via a channel used to access at least one of a product or a service, wherein the initiation information is configured to identify a user of a device;

determine an authorization level for the user of the device that is based on the initiation information and also specific to the channel used to access the at least one of the product or the service by the device;

provide the determined authorization level to the authorizer; and

selectively control access to the at least one of the product or the service based on a level of authorization defined by an enrollment token received from the authorizer and stored on the device, the enrollment token defining the level of authorization based on the determined authorization level and including identifying information that identifies the device.

9. The system of claim 8 , wherein the enrollment token binds the user and the device via identifying information included in the enrollment token that is placed on the device.

10. The system of claim 8 , wherein the instructions further cause the processor to determine that the authorization level is lower than that associated with the channel based on the initiation information.

11. The system of claim 8 , wherein the instructions further cause the processor to determine an updated authorization level based on a change in a class of authentication associated with a different channel.

12. The system of claim 8 , wherein the channel is one of an automated teller machine or an automated telephone operator.

13. The system of claim 8 , wherein the authorization level is one of a plurality of predefined authorization levels.

14. The system of claim 8 , wherein the at least one of the product or the service is at least one of opening a new account or a processing of a transaction.

15. A method, comprising:

providing, by a user computing device, initiation information to an authorizer via a channel, wherein the initiation information is configured to identify a user of the user computing device;

determining, by the user computing device, an authorization level for the user of the user computing device based on the initiation information and that is also specific to the channel used to access at least one of a product or a service;

providing, by the user computing device, the determined authorization level to the authorizer; and

selectively controlling, by the user computing device, access to the at least one of the product or the service based on a level of authorization defined by an enrollment token received from the authorizer and stored on the user computing device, the enrollment token including identifying information that identifies the user computing device and defines the level of authorization based on the determined authorization level.

16. The method of claim 15 , wherein the level of authorization defines a level of authentication of the user of the user computing device, and wherein the enrollment token binds the user to the user computing device via identifying information included in the enrollment token being placed on the user computing device.

17. The method of claim 15 , wherein the authorizer is a first authorizer and the method further includes:

providing, by the user computing device, updated initiation information to a second authorizer;

receiving, by the user computing device, an updated enrollment token defining an updated level of authorization based on the updated initiation information; and

replacing, by the user computing device, the enrollment token with the updated enrollment token in response to determining the updated level of authorization is higher than the level of authorization defined by the enrollment token.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 31, 2025
From: VANCINI, ADAM EVANS; CLAUSEN, CHRISTOPHER PHILLIP; SUEN, DARRELL L.
To: WELLS FARGO BANK, N.A.
Reel/Frame 070678/0904 →
Continuity (3)
Continuation 16855654 · Apr 22, 2020
Continuation 16378144 · Apr 8, 2019
Continuation 14506250 · Oct 3, 2014
References Cited (102)
US 4720860A · Weiss · 1988 [cited by applicant]
US 4856062A · Weiss · 1989 [cited by applicant]
US 4885778A · Weiss · 1989 [cited by applicant]
US 6012144A · Pickett · 2000 [cited by applicant]
US 6067621A · Yu et al. · 2000 [cited by applicant]
US 6393298B1 · Fulton · 2002 [cited by applicant]
US 6707915B1 · Jobst et al. · 2004 [cited by applicant]
US 6758394B2 · Maskatiya et al. · 2004 [cited by applicant]
US 6879825B1 · Daly · 2005 [cited by applicant]
US 6915272B1 · Zilliacus et al. · 2005 [cited by applicant]
US 6934858B2 · Woodhill · 2005 [cited by applicant]
US 7086085B1 · Brown et al. · 2006 [cited by applicant]
US 7161465B2 · Wood et al. · 2007 [cited by applicant]
US 7363494B2 · Brainard et al. · 2008 [cited by applicant]
US 7614078B1 · Stieglitz · 2009 [cited by applicant]
US 7680491B2 · Zabawskyj et al. · 2010 [cited by applicant]
US 7908645B2 · Varghese et al. · 2011 [cited by applicant]
US 7945946B2 · Rowley · 2011 [cited by applicant]
US 8255971B1 · Webb et al. · 2012 [cited by applicant]
US 8281379B2 · Noe · 2012 [cited by applicant]
US 8315595B2 · Murphy et al. · 2012 [cited by applicant]
US 8365252B2 · Mahaffey et al. · 2013 [cited by applicant]
US 8369887B2 · Choe et al. · 2013 [cited by applicant]
US 8452693B2 · Shah et al. · 2013 [cited by applicant]
US 8533118B2 · Weller et al. · 2013 [cited by applicant]
US 8555355B2 · Rathbun · 2013 [cited by applicant]
US 8584219B1 · Toole et al. · 2013 [cited by applicant]
US 8595808B2 · Langley · 2013 [cited by applicant]
US 8612747B2 · Roskind · 2013 [cited by applicant]
US 8613055B1 · Tomilson et al. · 2013 [cited by applicant]
US 8625796B1 · Ben Ayed · 2014 [cited by applicant]
US 8677116B1 · Bicer · 2014 [cited by applicant]
US 8775814B2 · Bidare · 2014 [cited by applicant]
US 8839360B1 · Orr et al. · 2014 [cited by applicant]
US 9020479B1 · Somayajula et al. · 2015 [cited by applicant]
US 9357378B1 · Delker et al. · 2016 [cited by applicant]
US 9400877B2 · Isozaki et al. · 2016 [cited by applicant]
US 9473490B2 · Clausen et al. · 2016 [cited by applicant]
US 9639692B1 · Xue · 2017 [cited by applicant]
US 10255429B2 · Vancini et al. · 2019 [cited by applicant]
US 10664587B1 · Vancini et al. · 2020 [cited by applicant]
US 20030068072A1 · Hamid · 2003 [cited by examiner]
US 20030070091A1 · Loveland · 2003 [cited by examiner]
US 20030181219A1 · Huang · 2003 [cited by applicant]
US 20040019564A1 · Goldthwaite et al. · 2004 [cited by applicant]
US 20060120607A1 · Lev · 2006 [cited by applicant]
US 20070015538A1 · Wang · 2007 [cited by applicant]
US 20080046988A1 · Baharis et al. · 2008 [cited by applicant]
US 20080051062A1 · Lee · 2008 [cited by applicant]
US 20080075281A1 · Zeng · 2008 [cited by applicant]
US 20080081609A1 · Burgan et al. · 2008 [cited by applicant]
US 20080162338A1 · Samuels et al. · 2008 [cited by applicant]
US 20080207203A1 · Arthur et al. · 2008 [cited by applicant]
US 20090259588A1 · Lindsay · 2009 [cited by applicant]
US 20110010761A1 · Doyle · 2011 [cited by applicant]
US 20110138175A1 · Clark et al. · 2011 [cited by applicant]
US 20110225625A1 · Wolfson et al. · 2011 [cited by applicant]
US 20110289572A1 · Skeel · 2011 [cited by applicant]
US 20120030354A1 · Razzaq et al. · 2012 [cited by applicant]
US 20120130901A1 · Coppinger · 2012 [cited by applicant]
US 20120131338A1 · Bellwood et al. · 2012 [cited by applicant]
US 20120172067A1 · Gillin · 2012 [cited by applicant]
US 20120295580A1 · Corner · 2012 [cited by applicant]
US 20120324568A1 · Wyatt et al. · 2012 [cited by applicant]
US 20130006848A1 · Kuttuva · 2013 [cited by applicant]
US 20130042298A1 · Plaza Fonseca et al. · 2013 [cited by applicant]
US 20130054454A1 · Purves et al. · 2013 [cited by applicant]
US 20130055346A1 · Singh et al. · 2013 [cited by applicant]
US 20130080276A1 · Granbery · 2013 [cited by applicant]
US 20130145447A1 · Maron · 2013 [cited by applicant]
US 20130227646A1 · Haggerty et al. · 2013 [cited by applicant]
US 20130227666A1 · White · 2013 [cited by examiner]
US 20130227677A1 · Pal et al. · 2013 [cited by applicant]
US 20130317928A1 · Laracey · 2013 [cited by applicant]
US 20130326605A1 · Betz et al. · 2013 [cited by applicant]
US 20130331063A1 · Cormier et al. · 2013 [cited by applicant]
US 20140020929A1 · Hisada et al. · 2014 [cited by applicant]
US 20140051398A1 · Ben Shlush et al. · 2014 [cited by applicant]
US 20140066015A1 · Aissi · 2014 [cited by applicant]
US 20140074490A1 · Kundu et al. · 2014 [cited by applicant]
US 20140096222A1 · Colnot · 2014 [cited by applicant]
US 20140189841A1 · Metke et al. · 2014 [cited by applicant]
US 20150032625A1 · Dill et al. · 2015 [cited by applicant]
US 20150193781A1 · Dave · 2015 [cited by examiner]
US 20160337344A1 · Johansson et al. · 2016 [cited by applicant]
US 20170032111A1 · Johansson et al. · 2017 [cited by applicant]
US 20170134944A1 · Christian et al. · 2017 [cited by applicant]
US 20170171804A1 · Waltermann et al. · 2017 [cited by applicant]
KR 101206072B1 · 2012 [cited by applicant]
NL 1019440C2 · 2003 [cited by applicant]
TW 200941410A · 2009 [cited by applicant]
TW 201101215A · 2011 [cited by applicant]
WO WO2013087018A1 · 2013 [cited by applicant]
WO WO2013133763A1 · 2013 [cited by applicant]
Kett An I, et al; “Mldm: an Open Architecture for Mobile Identity Management”; Journal of Convergence; vol. 2, No. 2; Dec. 2011, 8 pages. [cited by applicant]
A. El Husseini, et al.; “A Novel Trust-Based Authentication Scheme for Low-Resource Devices in Smart Environments”; www.sciencedirect.com; Procedia Computer Science, vol. 5, 2011. [cited by applicant]
A. Hiltgen, et al.; “Secure Internet Banking Authentication”; The IEEE Computer Society, 2005, 9 pages. [cited by applicant]
Alain Hil Tgen, Thorston Kramp and Thomas Weigold; The IEEE Computer Society; Secure Internet Banking Authentication; 2005, 9 pages. [cited by applicant]
Mozillawiki; WebAPI/WebPayment/Multi-SIM; https://wikimozilla.org/WebAPI/WebPayment/Multi-SIM; Mar. 28, 2014; pp. 3-4. [cited by applicant]
R. Balakrishna, et al.; “Secure authenticated key exchange protocol for credential services”; DESI DOC Journal of Library & Information Technology, v 29, n 3, 49-53, May 2009; ISSN: 0974-0643; Publisher: Defence Scienti… [cited by applicant]
RSE; “Using a Risk-Based Approach to Address a Changing Threat Landscape”; www.bitpip.com/detail/RES/1384145648_319.html; Jan. 2013. [cited by applicant]
W. Han, et al.; “Anti-phishing by smart mobile device”; IFIP International Conference on Network and Parallel Computer Workshops, Fudan Univ., Shanghai, China; Sep. 18-21, 2007, Liaoning, China; Publisher: IEEE, Piscata… [cited by applicant]