Systems and methods for dynamic authentication using physical keys
First Claim
1. A method of dynamic authentication comprising the steps of:
- determining a first set of associations between groups of users, user devices and at least one physical key;
determining over a first communications channel, a proposed dynamic association between a guest device and the user of a physical key based on the presence of the physical key. determining over a second communication channel, a user confirmation of the proposed dynamic association;
authenticating the guest device based on the dynamic association, the user confirmation, and the first set of associations for access to at least one of;
information and services associated with the user of the user device.
3 Assignments
0 Petitions
Accused Products
Abstract
A physical key is used to propose an association between a guest device and user information and services. Contact-based or contact-less connectors are used to establish the proposed association between the physical key and the guest device. The proposed association then communicated to the dynamic authentication system over a first communication channel. The dynamic authentication system determines a user confirmation over a second communications channel based on a user device and previously determined associations between users, user devices and the physical key. The guest device is then authenticated for access to information and/or services associated with the user. The information retrieved from and/or transmitted to the user'"'"'s personal information repository is optionally protected using various transformations. Optional session identifiers supported on the physical key and/or the user device, ensure the protected information is inaccessible when the physical key is removed and/or the predetermined association with the user device is deleted.
85 Citations
43 Claims
-
1. A method of dynamic authentication comprising the steps of:
-
determining a first set of associations between groups of users, user devices and at least one physical key;
determining over a first communications channel, a proposed dynamic association between a guest device and the user of a physical key based on the presence of the physical key. determining over a second communication channel, a user confirmation of the proposed dynamic association;
authenticating the guest device based on the dynamic association, the user confirmation, and the first set of associations for access to at least one of;
information and services associated with the user of the user device. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 26, 27, 28, 29, 30, 31, 32, 33, 38, 39, 43)
-
-
11. A system of dynamic authentication comprising:
-
a memory for storing a first set of associations between groups of users, user devices and at least one physical key;
an input/output circuit that receives a proposed dynamic association between a guest device and the user of a physical key based on the presence of the physical key, in which the proposed dynamic association is received over a first communications channel. a user confirmation of the proposed dynamic association over a second communication channel;
a processor that authenticates the guest device based on the dynamic association, the user confirmation, and the first set of associations for access to at least one of;
information and services associated with the user of the user device. - View Dependent Claims (12, 13, 14, 15, 16, 17, 18, 19, 20, 34, 35, 36, 37, 40, 41)
-
-
21. A carrier wave encoded to transmit a control program, useable to program a computer to dynamically authenticate devices, to a device for executing the program, the control program comprising:
-
instructions for determining a first set of associations between groups of users, user devices and at least one physical key;
instructions for determining over a first communications channel, a proposed dynamic association between a guest device and the user of a physical key based on the presence of the physical key;
instructions for determining over a second communication channel, a user confirmation of the proposed dynamic association; and
instructions for authenticating the guest device based on the dynamic association, the user confirmation, and the first set of associations for access to at least one of;
information and services associated with the user of the user device.
-
-
22. A computer readable storage medium comprising computer readable program code embodied on the computer readable storage medium, the computer readable program code useable to program a computer to dynamically authenticate devices comprising the steps of:
-
determining a first set of associations between groups of users, user devices and at least one physical key;
determining over a first communications channel, a proposed dynamic association between a guest device and the user of a physical key based on the presence of the physical key. determining over a second communication channel, a user confirmation of the proposed dynamic association;
authenticating the guest device based on the dynamic association, the user confirmation, and the first set of associations for access to at least one of;
information and services associated with the user of the user device.
-
-
23. A physical key for dynamically authenticating a user to a data service comprising:
-
a physical key identifier that identifies the physical key; and
a connector for proposing a dynamic association with a guest device based on the physical key identifier. - View Dependent Claims (24, 25)
-
-
42. A physical key useable with a data system comprising:
-
an identifier for retrieving previously specified associations between the physical key and at least one user device; and
a connector for proposing a dynamic association with a guest device in which the proposed dynamic association is communicated over a communications link associated with at least one of a physical key and the guest device.
-
Specification