IP Library Granted Patent US 10,063,564
Granted Patent B2
US 10,063,564 · App. 14/877,391 · Granted Aug 28, 2018

Identity authentication using multiple devices

Inventors: Jake Seigel (Halifax, CA); Sohail Ali (Halifax, CA); Derek Jury (Beachville, CA)
Assignee: Quest Software, Inc.
H04L63/107H04L63/0492H04L63/0876H04W4/80H04W12/06
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,063,564
App. No.
14/877,391
Granted
Aug 28, 2018
Kind
B2
Abstract

A system, method, and computer-readable medium for performing an authentication operation comprising: identifying a plurality of user devices associated with a user of an information handling system; determining when at least some of the plurality of user devices are within a predetermined range of the information handling system; and, authenticating the user as an authorized user of the information handling system when at least some of the plurality of user devices are within the predetermined range of the information handling system.

Claims (66)

1. A computer-implementable method, comprising:

registering a first user device associated with a user with an information handling system;

registering a second user device associated with the user with the information handling system;

determining that the first user device and the second user device are connected to a network associated with the information handling system;

receiving an authentication request from the first user device, the authentication request including an identifier of the first user device;

accessing an electronic record of the user based on the first user device to determine an identity of the user and other user devices that are registered with the user;

identifying the second user device in the electronic record;

determining that the first user device and the second user device are within a predetermined range of the information handling system based on a detected signal strength for each of the first user device and the second user device to the network;

determining a confidence value based on at least one of: the first user device, the second user device, a type of device for the first user device, and a type of device of the second user device; and

authenticating the user as an authorized user of the information handling system (a) based on the first user device and the second device both being connected to the network, (b) when both the first user device and the second device are within the predetermined range of the information handling system, the authenticating using the first user device and the second user device to confirm an identity of the user for the user to access the information handling system, and (c) based on the confidence value being within a confidence value threshold.

2. The method of claim 1 , wherein:

the authenticating is configured to only be enabled while the information handling system authenticating the user is coupled to the network.

3. The method of claim 1 , wherein:

the first user device and the second user device comprise at least one of a smart phone type information handling system, a tablet type information handling system, a wearable fitness device, a smart watch, and an employee identification badge.

4. The method of claim 1 , wherein:

a wireless communication technology is used to communicate between the first user device and the second user device and the information handling system.

5. The method of claim 1 , wherein:

registering the first user device and the second user device further comprises determining a device identifier associated with each of the first user device and the second user device; and,

the authenticating further comprises comparing the device identifier associated with each of the first user device and the second user device with a previously stored device identifier for each of the first user device and the second user device.

6. The method of claim 1 , wherein:

the authenticating further comprises a learning operation, the learning operation identifying user devices within a predetermined range of the information handling system when the user is identified as an authorized user of the information handling system.

7. A system comprising:

a processor;

a data bus coupled to the processor; and

a non-transitory, computer-readable storage medium embodying computer program code, the non-transitory, computer-readable storage medium being coupled to the data bus, the computer program code interacting with a plurality of computer operations and comprising instructions that, when executed by the processor, cause the system to perform operations comprising:

register a first user device associated with a user with an information handling system;

register a second user device associated with the user with the information handling system;

determine that the first user device and the second user device are connected to a network associated with the information handling system

receive an authentication request from the first user device, the authentication request including an identifier of the first user device;

access an electronic record of the user based on the first user device to determine an identity of the user and other user devices that are registered with the user;

identify the second user device in the electronic record;

determine that the first user device and the second user device are within a predetermined range of the information handling system based on a detected signal strength for each of the first user device and the second user device to the network; and,

determine a confidence value based on at least one of: the first user device, the second user device, a type of device for the first user device, and a type of device of the second user device;

authenticate the user as an authorized user of the information handling system (a) based on the first user device and the second device both being connected to the network, (b) when both the first user device and the second device are within the predetermined range of the information handling system, the authenticating using the first user device and the second user device to confirm an identity of the user for the user to access the information handling system, and (c) based on the confidence value being within a confidence value threshold.

8. The system of claim 7 , wherein:

the authenticating is configured to only be enabled while the information handling system authenticating the user is coupled to the network.

9. The system of claim 7 , wherein:

the first user device and the second user device comprise at least one of a smart phone type information handling system, a tablet type information handling system, a wearable fitness device, a smart watch, and an employee identification badge.

10. The system of claim 7 , wherein:

a wireless communication technology is used to communicate between the first user device and the second user device and the information handling system.

11. The system of claim 7 , wherein:

registering the first user device and the second user device further comprises determining a device identifier associated with each of the first user device and the second user device; and,

the authenticating further comprises comparing the device identifier associated with each of the first user device and the second user device with a previously stored device identifier for each of the first user device and the second user device.

12. The system of claim 7 , wherein:

the authenticating further comprises a learning operation, the learning operation identifying user devices within a predetermined range of the information handling system when the user is identified as an authorized user of the information handling system.

13. A non-transitory, computer-readable storage medium embodying computer program code, the computer program code comprising computer executable instructions that, when executed by a processor, cause a system to perform operations comprising:

registering a first user device associated with a user with an information handling system;

registering a second user device associated with the user with the information handling system;

determining that the first user device and the second user device are connected to a network associated with the information handling system;

receiving an authentication request from the first user device, the authentication request including an identifier of the first user device;

accessing an electronic record of the user based on the first user device to determine an identity of the user and other user devices that are registered with the user;

identifying the second user device in the electronic record;

determining that the first user device and the second user device are within a predetermined range of the information handling system based on a detected signal strength for each of the first user device and the second user device to the network;

determining a confidence value based on at least one of: the first user device, the second user device, a type of device for the first user device, and a type of device of the second user device; and

authenticating the user as an authorized user of the information handling system (a) based on the first user device and the second device both being connected to the network, (b) when both the first user device and the second device are within the predetermined range of the information handling system, the authenticating using the first user device and the second user device to confirm an identity of the user for the user to access the information handling system, and (c) based on the confidence value being within a confidence value threshold.

14. The non-transitory, computer-readable storage medium of claim 13 , wherein:

the authenticating is configured to only be enabled while the information handling system authenticating the user is coupled to the network.

15. The non-transitory, computer-readable storage medium of claim 13 , wherein:

the first user device and the second user device comprise at least one of a smart phone type information handling system, a tablet type information handling system, a wearable fitness device, a smart watch, and an employee identification badge.

16. The non-transitory, computer-readable storage medium of claim 13 , wherein:

a wireless communication technology is used to communicate between the first user device and the second user device and the information handling system.

17. The non-transitory, computer-readable storage medium of claim 13 , wherein:

registering the first user device and the second user device further comprises determining a device identifier associated with each of the first user device and the second user device; and,

the authenticating further comprises comparing the device identifier associated with each of the first user device and the second user device with a previously stored device identifier for each of the first user device and the second user device.

18. The non-transitory, computer-readable storage medium of claim 13 , wherein:

the authenticating further comprises a learning operation, the learning operation identifying user devices within a predetermined range of the information handling system when the user is identified as an authorized user of the information handling system.

Assignments (26)
RELEASE OF SECURITY INTEREST Recorded Nov 19, 2025
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: QUEST SOFTWARE INC.; ANALYTIX DATA SERVICES INC.; BINARYTREE.COM LLC; ERWIN, INC.
Reel/Frame 073606/0001 →
RELEASE OF SECURITY INTEREST Recorded Nov 18, 2025
From: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
To: QUEST SOFTWARE INC.; ANALYTIX DATA SERVICES INC.; BINARYTREE.COM LLC; ERWIN, INC.
Reel/Frame 073613/0326 →
SECURITY INTEREST Recorded Jun 8, 2025
From: QUEST SOFTWARE INC.; ANALYTIX DATA SERVICES INC.; ERWIN, INC.
To: ALTER DOMUS (US) LLC
Reel/Frame 071527/0649 →
SECURITY INTEREST Recorded Jun 8, 2025
From: QUEST SOFTWARE INC.; ANALYTIX DATA SERVICES INC.; ERWIN, INC.
To: ALTER DOMUS (US) LLC
Reel/Frame 071527/0001 →
SECOND LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Feb 2, 2022
From: QUEST SOFTWARE INC.; ANALYTIX DATA SERVICES INC.; BINARYTREE.COM LLC; ERWIN, INC.; ONE IDENTITY LLC; ONELOGIN, INC.; ONE IDENTITY SOFTWARE INTERNATIONAL DESIGNATED ACTIVITY COMPANY
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 058952/0279 →
FIRST LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Feb 2, 2022
From: QUEST SOFTWARE INC.; ANALYTIX DATA SERVICES INC.; BINARYTREE.COM LLC; ERWIN, INC.; ONE IDENTITY LLC; ONELOGIN, INC.; ONE IDENTITY SOFTWARE INTERNATIONAL DESIGNATED ACTIVITY COMPANY
To: GOLDMAN SACHS BANK USA
Reel/Frame 058945/0778 →
RELEASE OF SECOND LIEN SECURITY INTEREST IN PATENTS Recorded Feb 2, 2022
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
To: QUEST SOFTWARE INC.
Reel/Frame 059096/0683 →
RELEASE OF FIRST LIEN SECURITY INTEREST IN PATENTS Recorded Feb 2, 2022
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
To: QUEST SOFTWARE INC.
Reel/Frame 059105/0479 →
CHANGE OF NAME Recorded Jun 19, 2018
From: DELL SOFTWARE INC.
To: QUEST SOFTWARE INC.
Reel/Frame 046393/0009 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jun 7, 2018
From: QUEST SOFTWARE INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 046327/0347 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jun 7, 2018
From: QUEST SOFTWARE INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 046327/0486 →
RELEASE OF FIRST LIEN SECURITY INTEREST IN PATENTS RECORDED AT R/F 040581/0850 Recorded May 22, 2018
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
To: QUEST SOFTWARE INC. (F/K/A DELL SOFTWARE INC.); AVENTAIL LLC
Reel/Frame 046211/0735 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE PREVIOUSLY RECORDED AT REEL: 040587 FRAME: 0624. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Nov 28, 2017
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: QUEST SOFTWARE INC. (F/K/A DELL SOFTWARE INC.); AVENTAIL LLC
Reel/Frame 044811/0598 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Nov 10, 2016
From: DELL SOFTWARE INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040587/0624 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Nov 9, 2016
From: DELL SOFTWARE INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040581/0850 →
RELEASE OF SECURITY INTEREST Recorded Oct 31, 2016
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: AVENTAIL LLC; DELL PRODUCTS, L.P.; DELL SOFTWARE INC.
Reel/Frame 040521/0467 →
RELEASE OF SECURITY INTEREST IN CERTAIN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (040039/0642) Recorded Oct 31, 2016
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
To: AVENTAIL LLC; DELL PRODUCTS L.P.; DELL SOFTWARE INC.
Reel/Frame 040521/0016 →
RELEASE OF REEL 037160 FRAME 0142 (NOTE) Recorded Sep 14, 2016
From: BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
To: DELL SOFTWARE INC.; DELL PRODUCTS L.P.; WYSE TECHNOLOGY L.L.C.
Reel/Frame 040027/0812 →
SECURITY AGREEMENT Recorded Sep 14, 2016
From: AVENTAIL LLC; DELL PRODUCTS L.P.; DELL SOFTWARE INC.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 040039/0642 →
SECURITY AGREEMENT Recorded Sep 14, 2016
From: AVENTAIL LLC; DELL PRODUCTS, L.P.; DELL SOFTWARE INC.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040030/0187 →
RELEASE OF REEL 037160 FRAME 0239 (TL) Recorded Sep 14, 2016
From: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
To: DELL SOFTWARE INC.; DELL PRODUCTS L.P.; WYSE TECHNOLOGY L.L.C.
Reel/Frame 040028/0115 →
RELEASE OF REEL 037160 FRAME 0171 (ABL) Recorded Sep 13, 2016
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: DELL SOFTWARE INC.; DELL PRODUCTS L.P.; WYSE TECHNOLOGY L.L.C.
Reel/Frame 040017/0253 →
SUPPLEMENTAL PATENT SECURITY AGREEMENT - NOTES Recorded Nov 25, 2015
From: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; BOOMI, INC.; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS FIRST LIEN COLLATERAL AGENT
Reel/Frame 037160/0142 →
SUPPLEMENTAL PATENT SECURITY AGREEMENT - TERM LOAN Recorded Nov 25, 2015
From: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; BOOMI, INC.; WYSE TECHNOLOGY L.L.C.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 037160/0239 →
SUPPLEMENTAL PATENT SECURITY AGREEMENT - ABL Recorded Nov 25, 2015
From: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; BOOMI, INC.; WYSE TECHNOLOGY L.L.C.
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 037160/0171 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 7, 2015
From: SEIGEL, JAKE; ALI, SOHAIL; JURY, DEREK
To: DELL SOFTWARE, INC.
Reel/Frame 036750/0438 →
Continuity (1)
Related Publication 20170104761A1 · Apr 13, 2017
Cited By (1)
US 12,375,916