IP Library Granted Patent US 9,660,985
Granted Patent B2
US 9,660,985 · App. 14/685,351 · Granted May 23, 2017

Service authorization using auxiliary device

Inventor: Kai Cao (Hangzhou, CN)
Assignee: Alibaba Group Holding Limited
H04L63/0853G06F21/34G06F21/44H04L9/3226H04L63/083H04L63/18
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,660,985
App. No.
14/685,351
Granted
May 23, 2017
Kind
B2
Abstract

Implementations of the present disclosure relate to systems and methods for service authorization. A server terminal device may receive user authentication information that is stored on the auxiliary device for user authentication associated with an authentication device. Based on the user authentication information, the server terminal device may then determine whether the authentication device meets the authentication condition. The implementations further relate to methods and systems for requesting service authorization.

Claims (33)

1. A method for service authorization, the method comprising:

receiving, at a server terminal device, a request for user authentication, the user authentication request including identifier information of a user terminal device;

generating, at the server terminal device, a service serial number based on the user authentication request, the service serial number having a mapping relationship with the user authentication request;

receiving, by one or more processors of the server terminal device, the service serial number and user authentication information that are stored on an auxiliary device for user authentication associated with the user terminal device, wherein the user authentication information comprises an authentication token and user identification information, wherein the authentication token comprises encrypted information based on first time information and random information stored on the auxiliary device for user authentication, the first time information including local time information when receiving an auxiliary authentication request from the user terminal device comprising the service serial number, and the random information including information transmitted by the server terminal device to the auxiliary device for user authentication after verification of the user identification information; and

determining, at the server terminal device, whether the user terminal device meets an authorization condition based on the user authentication information, wherein the determining whether the terminal device meets the authorization condition comprises:

generating a verification authentication token by encrypting second time information and the random information, wherein the second time information is based on when the server terminal device received the user authentication information;

comparing the verification authentication token to the authentication token contained in the user authentication information;

if the verification authentication token matches the authentication token, determining if the received service serial number corresponds to the user authentication request;

in response to determining that the service serial number corresponds to the user authentication request, identifying the user terminal device based on the identifier information of the user terminal device; and

determining that the user terminal device meets the authorization operation in response to a determination that the verification authentication token matches the authentication token; and

determining that the user terminal device does not meet the authorization operation in response to a determination that the verification authentication token does not match the authentication token.

2. The method of claim 1 , wherein the user authentication information is provided by the auxiliary device for user authentication to the server terminal device.

3. The method of claim 1 , wherein the user authentication information is obtained from the user terminal device or the auxiliary device for user authentication and transmitted by the user terminal device to the server terminal device.

4. The method of claim 1 , wherein the auxiliary device for user authentication comprises at least one of a mobile phone, a desktop computer, a laptop, or a tablet.

5. The method of claim 1 , wherein the auxiliary device for user authentication and user terminal device exchange information using sound waves.

6. The method of claim 1 , wherein the user authentication information comprises a user name and a password.

7. A system for service authorization, the system comprising:

one or more processors; and

memory including instructions executable by the one or more processors which when executed perform acts comprising:

receiving a request for user authentication, the user authentication request including identifier information of a user terminal device;

generating a service serial number based on the user authentication request, the service serial number having a mapping relationship with the user authentication request;

receiving the service serial number and user authentication information that are stored on an auxiliary device for user authentication associated with the user terminal device, wherein the user authentication information comprises an authentication token and user identification information, wherein the authentication token comprises encrypted information based on first time information and random information stored on the auxiliary device for user authentication, the first time information including local time information when receiving an auxiliary authentication request from the user terminal device comprising the service serial number, and the random information including information transmitted by the server terminal device to the auxiliary device for user authentication after verification of the user identification information, and

determining whether the user terminal device meets an authorization condition based on the user authentication information, wherein the determining whether the terminal device meets the authorization condition comprises:

generating a verification authentication token by encrypting second time information and the random information, wherein the second time information is based on when the server terminal device received the user authentication information;

comparing the verification authentication token to the authentication token contained in the user authentication information;

if the verification authentication token matches the authentication token, determining if the received service serial number corresponds to the user authentication request;

in response to determining that the service serial number corresponds to the user authentication request, identifying the user terminal device based on the identifier information of the user terminal device; and

determining that the user terminal device meets the authorization operation in response to a determination that the verification authentication token matches the authentication token; and

determining that the user terminal device does not meet the authorization operation in response to a determination that the verification authentication token does not match the authentication token.

8. The system of claim 7 , wherein the user authentication information is provided by the auxiliary device for user authentication to a server terminal device of the system.

9. The system of claim 7 , wherein the user authentication information is obtained from the user terminal device from the auxiliary device for user authentication and transmitted by the user terminal device to a server terminal device of the system.

10. The system of claim 7 , wherein the auxiliary device for user authentication comprises at least one of a mobile phone, a desktop computer, a laptop, or a tablet.

11. The system of claim 7 , wherein the auxiliary device for user authentication and user terminal device exchange information by implementing sound waves.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 10, 2020
From: ADVANTAGEOUS NEW TECHNOLOGIES CO., LTD.
To: ADVANCED NEW TECHNOLOGIES CO., LTD.
Reel/Frame 054064/0610 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 31, 2020
From: ALIBABA GROUP HOLDING LIMITED
To: ADVANTAGEOUS NEW TECHNOLOGIES CO., LTD.
Reel/Frame 053650/0816 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 13, 2015
From: CAO, KAI
To: ALIBABA GROUP HOLDING LIMITED
Reel/Frame 036851/0703 →
Priority Claims (1)
CN 2014 1 0150396 · Apr 15, 2014 · national
Continuity (1)
Related Publication 20150295921A1 · Oct 15, 2015