×

Authentication of access request of a device and protecting confidential information

  • US 10,523,441 B2
  • Filed: 12/15/2016
  • Issued: 12/31/2019
  • Est. Priority Date: 12/15/2015
  • Status: Active Grant
First Claim
Patent Images

1. A method for requesting access to a resource, comprising:

  • receiving, by an application executing on a user device, order data and a signature based on the order data, the order data and the signature being received from an access device, the order data being for an order made via the access device to a request computer, wherein the signature is generated by the request computer using the order data, a shared secret key, and a second fingerprint of the access device, wherein the shared secret key is shared between the request computer and an authentication server;

    obtaining, by the application, a selection of a credential routine from a plurality of credential routines installed on the user device, wherein each of the plurality of credential routines have access to a different stored credential corresponding to a different service for obtaining access to the resource;

    requesting, by the application, a stored credential from the selected credential routine;

    obtaining, by the application, the stored credential from the credential routine installed on the user device; and

    sending, by the application to the authentication server, an access request including the order data, the signature, and the stored credential, the access request being a request for access to the resource, wherein the authentication server stores a first fingerprint of the access device received during a registration process with the access device, generates a second signature using the order data, the first fingerprint of the access device, and the shared secret key, compares the second signature to the signature received from the application, verifies the signature based on the comparison to the second signature, and provides a response to the access request based on the verifying of the signature.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×