US2002083012A1PendingUtilityA1

Method and system for account management

Priority: Nov 16, 2000Filed: Dec 22, 2000Published: Jun 27, 2002
Est. expiryNov 16, 2020(expired)· nominal 20-yr term from priority
G06Q 30/02H04L 63/083G06Q 20/3821G06Q 20/4012H04L 63/10H04L 67/306
55
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A method and system for managing accounts that control access to resources of different providers. The account management system allows providers to use a common logon procedure through an account management server. The account management system dynamically creates accounts when users request to access resources. To access to a resource, a user provides their credentials (e.g., user identifier and password) through a certain location (e.g., client computer) and identifies the resource (e.g., application). The account management system determines whether an account has already been created for those credentials. If not, the account management system authenticates the user, creates a new account for those credentials (i.e., registration), and associates the identified resource with the account.

Claims

exact text as granted — not AI-modified
1 . A computer-based method for identifying common accounts, the method comprising: 
 assigning a first user identifier to a first account, the first account being associated with a first node;    assigning a second user identifier to a second account, the second account being associated with a second node;    receiving a request from the second node that includes the first user identifier,    when the first account is not already associated to the second node, 
 determining whether the first and second accounts represent the same account; and  
 when it is determined that the first and second accounts represent the same account, combining the first and second accounts into a single account.  
   
     
     
         2 . The method of  claim 1  wherein the determining includes requesting a user to indicate whether the first and second accounts represent the same account.  
     
     
         3 . The method of  claim 2  including identifying the second account to the user by specifying a user name associated with the second account.  
     
     
         4 . The method of  claim 2  wherein when the user indicates that the first and second accounts represent the same account, requesting that the user provide credentials associated with the second account.  
     
     
         5 . The method of  claim 1  wherein each account has a user and the user of the first account is the same as the user of the second account.  
     
     
         6 . The method of  claim 1  wherein each account has a user and the user of the first account is not the same as the user of the second account.  
     
     
         7 . A method of  claim 1  wherein the combining includes deleting one of the accounts and assigning the user identifier assigned to the deleted account to the remaining account.  
     
     
         8 . The method of  claim 7  including associating with the remaining account a resource that was associated with the deleted account.  
     
     
         9 . The method of  claim 1  including: 
 when it is determined that the first and second accounts do not represent the same account, associating the first account with the second node.  
 
     
     
         10 . A computer-based method of generating a common account, one account being associated with a node, the method comprising: 
 receiving at the node information relating to an account; and    when the account to which the information is related is not currently associated with the node, 
 determining whether the account associated with the node and the node not currently associated with the node should be common accounts; and  
 when it is determined that the accounts should be common accounts, directing the combining the accounts into a single account.  
   
     
     
         11 . The method of  claim 10  wherein the determining includes requesting a user to indicate whether the accounts are common accounts.  
     
     
         12 . The method of  claim 11  wherein the determining includes identifying the account associated with the node to the user by specifying a user name associated with that account.  
     
     
         13 . The method of  claim 10  wherein each account is associated with one or more user identifiers.  
     
     
         14 . The method of  claim 13  wherein the information relating to the account is a user identifier associated with the account.  
     
     
         15 . The method of  claim 10  including determining that the account to which the information is related is not currently associated with the node by receiving an indication of that account from another computer.  
     
     
         16 . A method in a computer system for identifying common accounts, the method comprising: 
 receiving a user identifier from a user;    sending a log on request to a server computer, the request including the received user identifier, but not including an account identifier;    receiving a log on response from the server, the response including an account identifier associated with the received user identifier; and    when the received account identifier does not match an account identifier previously stored at the node, prompting the user to indicate whether the account identified by the received account identifier should be the same account as an account identified by an account identifier previously stored at the node.    
     
     
         17 . The method of  claim 16  including when the user indicates that the accounts should be common accounts, sending a log on request to the server computer, the request including the received user identifier and an account identifier previously stored at the node.  
     
     
         18 . The method of  claim 16  wherein the prompting occurs only if at least one account identifier was previously stored at the node.  
     
     
         19 . A method in a computer system for authorizing access to applications, each application having an application identifier, the method comprising: 
 receiving a plurality of user identifier and application identifier pairs;    for each pair received, storing the user identifier in association with the application identifier;    receiving a request to access an application, the request including a user identifier and application identifier pair, the application identifier identifying the application to be accessed; and    when the user identifier and application identifier pair of the request match a stored user identifier and application identifier pair, indicating that access to the application is authorized.    
     
     
         20 . The method of  claim 19  wherein the requested access is execution of the application.  
     
     
         21 . The method of  claim 19  wherein the plurality of user identifier and application identifier pairs are received in requests to access the application identified by the application identifier of the pair.  
     
     
         22 . The method of  claim 19  including when the user identifier and application identifier pair of the request does not match a stored user identifier and application identifier pair, indicating that access to the application is not authorized.  
     
     
         23 . The method of  claim 19  wherein access is authorized for applications developed by different application developers.  
     
     
         24 . The method of  claim 19  wherein the request is received and the authorization is indicated before starting execution of the requested application.  
     
     
         25 . The method of  claim 19  wherein received requests are sent by a plurality of client computers.  
     
     
         26 . The method of  claim 19  wherein each application identifier and user identifier pair includes a password and indicating that access to the application is authorized only when the request includes a password that matches the password for the application identifier and user identifier pair of the plurality of application identifier and user identifier pairs.  
     
     
         27 . A method in a computer system for authorizing access to different applications, each application having an application identifier, the method comprising: 
 receiving a plurality of user identifier and application identifier pairs; and    for each pair received, 
 sending the received user identifier and application identifier pair to an authorization system;  
 receiving from the authorization system an indication whether access to the application identified by the application identifier is authorized.  
   
     
     
         28 . The method of  claim 27  wherein the authorization system maintains user identifier and application identifier pairs that indicate the user identified by the user identifier is authorized to access the application identified by the application identifier.  
     
     
         29 . The method of  claim 27  wherein the receiving includes receiving a password that is sent to the authorization system wherein authorization is indicated only when the sent password matches a password stored at the authorization system for the sent user identifier and application identifier pair.  
     
     
         30 . A method in a computer system for authorizing access to a resource, each resource having a resource identifier, the method comprising: 
 providing a plurality of user identifier and resource identifier pairs, each user identifier and resource identifier pair indicating that the identified user is authorized to access the identified resource;    receiving a request to access a resource, the request including a user identifier and resource identifier pair, the resource identifier identifying the resource to be accessed; and    when the user identifier and resource identifier pair of the received request match a provided user identifier and resource identifier pair, indicating that access to the resource is authorized.    
     
     
         31 . The method of  claim 30  wherein the resource is computer data.  
     
     
         32 . The method of  claim 30  wherein the resource is a communications channel.  
     
     
         33 . The method of  claim 30  wherein the indicating that access to the resource is authorized occurs after performing authentication for the identified user.  
     
     
         34 . The method of  claim 33  wherein the authentication includes comparing a received password with a password associated with the matched user identifier and resource identifier pair.  
     
     
         35 . A method in a computer system for managing accounts, the method comprising: 
 assigning an account to a node;    receiving from the node a request to access a computer resource that is associated with an account that is not assigned to the node; and    in response to receiving the request, assigning the account associated with the computer resource to the node so that the computer resource can be accessed from the node.    
     
     
         36 . The method of  claim 35  wherein the computer resource is an application.  
     
     
         37 . The method of  claim 35  including after access to the computer resource is complete, un-assigning the account associated with the computer resource from the node.  
     
     
         38 . The method of  claim 35  wherein the accounts associated with the node represent accounts of different users.  
     
     
         39 . The method of  claim 35  wherein the nodes are computers.  
     
     
         40 . The method of  claim 35  wherein the computer resource is computer data.  
     
     
         41 . The method of  claim 35  wherein the computer resource is a user.  
     
     
         42 . The method of  claim 35  wherein the computer resource is a communications channel.  
     
     
         43 . A method in a computer system accessing a computer resource, the method comprising: 
 assigning a different account to each of a plurality of nodes;    receiving from a node a notification that a user has requested to access a computer resource that is associated with an account that is assigned to another node; and    in response to receiving the notification, temporarily assigning the account associated with the computer resource to the node so that the user can access the computer resource from the node.    
     
     
         44 . The method of  claim 43  wherein after access to the computer resource is complete, all information relating to the temporarily assigned account is removed from the node.  
     
     
         45 . The method of  claim 43  wherein after access to the computer resource is complete, un-assigning the account from the node.  
     
     
         46 . A method in a computer system for tracking use of applications, the method comprising: 
 receiving from a client computer a request to access an application, the requests including an application identifier and user identifier;    determining whether the user identifier is associated with an account;    when the user identifier is associated with an account, 
 sending to an authorization computer a request to authorize access to the application, the request including the user identifier; and  
 upon receiving a response indicating that access is authorized, sending to the client computer a response indicating that access is authorized.  
   
     
     
         47 . The method of  claim 46  wherein the request received from the client computer includes a password that is sent to the authorization system.  
     
     
         48 . The method of  claim 46  including sending the application identifier to the authorization system.  
     
     
         49 . A method in a computer system for managing account, the method comprising: 
 receiving a plurality of user identifiers;    associating the user identifiers with a single account;    receiving attributes when a user is logged on with one of the user identifiers associated with the single account; and    providing those received attributes when a user is logged on with another of the user identifiers associated with the single account.    
     
     
         50 . The method of  claim 49  wherein the attributes includes preferences relating to access to an application.  
     
     
         51 . The method of  claim 51  whereby the attributes are associated with the single account rather than an single user identifier.  
     
     
         52 . A computer-readable medium containing instructions for causing a computer system to generate common account, one account being associated with a node, by a method comprising: 
 receiving at the node information relating to an account; and    when the account to which the information is related is not currently associated with the node, 
 determining whether the account associated with the node and the node not currently associated with the node should be common accounts; and  
 when it is determined that the accounts should be common accounts, directing the combining the accounts into a single account.  
   
     
     
         53 . The computer-readable medium of  claim 52  wherein the determining includes requesting a user to indicate whether the accounts are common accounts.  
     
     
         54 . The computer-readable medium of  claim 53  wherein the determining includes identifying the account associated with the node to the user by specifying a user name associated with that account.  
     
     
         55 . The computer-readable medium of  claim 52  wherein each account is associated with one or more user identifiers.  
     
     
         56 . The computer-readable medium of  claim 55  wherein the information relating to the account is a user identifier associated with the account.  
     
     
         57 . The computer-readable medium of  claim 52  including determining that the account to which the information is related is not currently associated with the node by receiving an indication of that account from another computer.  
     
     
         58 . A computer system for generating a common account, one account being associated with a node, comprising: 
 means for receiving at the node information relating to an account; and    means for, when the account to which the information is related is not currently associated with the node, determining whether the account associated with the node and the node not currently associated with the node should be common accounts; and when it is determined that the accounts should be common accounts, directing the combining the accounts into a single account.    
     
     
         59 . The computer system of  claim 58  wherein the means for determining includes requesting a user to indicate whether the accounts are common accounts.  
     
     
         60 . The computer system of  claim 59  wherein the means for determining includes means for identifying the account associated with the node to the user by specifying a user name associated with that account.  
     
     
         61 . The computer system of  claim 58  wherein each account is associated with one or more user identifiers.  
     
     
         62 . The computer system medium of  claim 61  wherein the information relating to the account is a user identifier associated with the account.  
     
     
         63 . The computer system medium of  claim 58  including means for determining that the account to which the information is related is not currently associated with the node by receiving an indication of that account from another computer.  
     
     
         64 . A computer-readable medium containing instructions for controlling a computer system to authorize access to different applications, each application having an application identifier, by a method comprising: 
 receiving a plurality of user identifier and application identifier pairs; and    for each pair received, 
 sending the received user identifier and application identifier pair to an authorization system;  
 receiving from the authorization system an indication whether access to the application identified by the application identifier is authorized.  
   
     
     
         65 . The computer-readable medium of  claim 64  wherein the authorization system maintains user identifier and application identifier pairs that indicate the user identified by the user identifier is authorized to access the application identified by the application identifier.  
     
     
         66 . The computer-readable medium of  claim 64  wherein the receiving includes receiving a password that is sent to the authorization system wherein authorization is indicated only when the sent password matches a password stored at the authorization system for the sent user identifier and application identifier pair.  
     
     
         67 . A computer-readable medium for controlling a computer system to authorize access to a resource, each resource having a resource identifier, by a method comprising: 
 providing a plurality of user identifier and resource identifier pairs, each user identifier and resource identifier pair indicating that the identified user is authorized to access the identified resource;    receiving a request to access a resource, the request including a user identifier and resource identifier pair, the resource identifier identifying the resource to be accessed; and    when the user identifier and resource identifier pair of the received request match a provided user identifier and resource identifier pair, indicating that access to the resource is authorized.    
     
     
         68 . The computer-readable medium of  claim 67  wherein the resource is computer data.  
     
     
         69 . The computer-readable medium of  claim 67  wherein the resource is a communications channel.  
     
     
         70 . The computer-readable medium of  claim 67  wherein the indicating that access to the resource is authorized occurs after performing authentication for the identified user.  
     
     
         71 . The computer-readable medium of  claim 67  wherein the authentication includes comparing a received password with a password associated with the matched user identifier and resource identifier pair.  
     
     
         72 . A method in a client computer for coordinating registration of a user with a server computer, comprising: 
 receiving a user identifier and an indication that the user is a new user;    when the client computer has previously cached that user identifier, 
 prompting the user to indicate whether the user is the same as the user associated with the previously cached user identifier;  
 when the user indicates that the user is not the same, allowing the user to enter a new user identifier; and  
 when the user indicates that the user is the same user, coordinating log on of the user; and  
   when the client computer has not previously cached that user identifier, 
 registering the user;  
 when the registration is successful, caching the user identifier and coordinating log on of the user.  
   
     
     
         73 . A method in a client computer for log on of a user, comprising: 
 receiving a user identifier and password;    sending a log on request to a server computer, the request including an account identifier when the client computer has an account identifier associated with the received user identifier;    when a response indicating that the log on was successful is received, the response including an account identifier, 
 when the account identifier does not match an account identifier previously cached at the client computer, prompting the user whether the received account identifier and a previously cached account identifier represent the same account; and  
 when the user indicates that the accounts represent the same account, combining the accounts.

Join the waitlist — get patent alerts

Track US2002083012A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.