Apparatus and method for implementing composite authenticators
First Claim
Patent Images
1. A client device comprising:
- one or more authenticators for authenticating a user of the client device with a relying party, each authenticator comprising a plurality of authentication components including at least one hardware authentication component, each of the authentication components within the client device performing a different function within a context of the authenticator within which it is used; and
component authentication logic on the client device to attest to a model or integrity of at least one of the plurality of authentication components to one or more of the other authentication components prior to allowing the authentication components to be combined on the client device to form the authenticator, wherein different combinations of authentication components are combined to form different authenticators, at least some of the authentication components are shared between authenticators, and each of the different authentication components is identified by the relying party using a unique authenticator attestation ID (AAID) code.
2 Assignments
0 Petitions
Accused Products
Abstract
A system, apparatus, method, and machine readable medium are described for implementing a composite authenticator. For example, an apparatus in accordance with one embodiment comprises: an authenticator for authenticating a user of the apparatus with a relying party, the authenticator comprising a plurality of authentication components; and component authentication logic to attest to the model and/or integrity of at least one authentication component to one or more of the other authentication components prior to allowing the authentication components to form the authenticator.
445 Citations
20 Claims
-
1. A client device comprising:
-
one or more authenticators for authenticating a user of the client device with a relying party, each authenticator comprising a plurality of authentication components including at least one hardware authentication component, each of the authentication components within the client device performing a different function within a context of the authenticator within which it is used; and component authentication logic on the client device to attest to a model or integrity of at least one of the plurality of authentication components to one or more of the other authentication components prior to allowing the authentication components to be combined on the client device to form the authenticator, wherein different combinations of authentication components are combined to form different authenticators, at least some of the authentication components are shared between authenticators, and each of the different authentication components is identified by the relying party using a unique authenticator attestation ID (AAID) code. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20)
-
Specification