Systems and methods for user access authentication based on network access point
First Claim
1. A method of user access authentication, the method comprising:
- receiving an authentication request;
determining whether to grant a user device access to a secure data network via a network access point; and
,responding to the authentication request with an authentication response indicating whether the user device is granted access to the secure data network via the network access point;
wherein whether to grant the user device access is determined in light of at least two data points, the at least two data points comprising a user identity provided by the user device and a network access point identity associated with the network access point; and
wherein the network access point is one of a plurality of network access points.
4 Assignments
0 Petitions
Accused Products
Abstract
Systems and methods of authenticating user access based on an access point to a secure data network include a secure data network having a plurality of a network access points serving as entry points for a user to access the secure data network using a user device. The user is associated with a user identity, each network access point with a network access point identity. The user uses a user device to send an access request, requesting access to the secure data network, to the network access point, which then sends an authentication request to an identity server. The identity server processes the authentication request, by validating the combination of the user identity and the network access point identity, and responds with an authentication response, granting or denying access, as communicated to the user device via an access response. The secure data network may comprise an application level secure data network, in which the user uses the user device to request access to a network application. Furthermore, the identity server may validate the combined user identity and network access point identity data in conjunction with time information, access allowance data, and/or traffic volume data.
119 Citations
32 Claims
-
1. A method of user access authentication, the method comprising:
-
receiving an authentication request; determining whether to grant a user device access to a secure data network via a network access point; and
,responding to the authentication request with an authentication response indicating whether the user device is granted access to the secure data network via the network access point; wherein whether to grant the user device access is determined in light of at least two data points, the at least two data points comprising a user identity provided by the user device and a network access point identity associated with the network access point; and wherein the network access point is one of a plurality of network access points. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20)
-
-
21. A system of user access authentication, the system comprising:
-
a secure data network having a plurality of network access points; a network access point selected from the plurality of network access points; an identity server in communication with the secure data network via the network access point, wherein the identity server processes an authentication request, sent by the network access point, based on an access request received by the network access point from a user device controlled by a user; wherein the identity server determines whether to grant the user device access to the secure data network via the network access point in light of at least two data points, the at least two data points comprising a user identity associated with the user and a network access point identity associated with the network access point; and
,wherein the identity server responds to the authentication request with an authentication response sent to the network access point indicating whether the user device is granted access to the secure data network via the network access point; - View Dependent Claims (22, 23, 24, 25, 26, 27, 28, 29, 30, 31, 32)
-
Specification