Token based two factor authentication and virtual private networking system for network management and security and online third party multiple network management method
Abstract
A two-factor network authentication system uses “something you know” in the form of a password/Pin and “something you have” in the form of a key token. The password is encrypted in a secure area of the USB device and is protected from brute force attacks. The key token includes authentication credentials. Users cannot authenticate without the key token. Four distinct authentication elements that the must be present. The first element is a global unique identifier that is unique to each key. The second is a private credential generated from the online service provider that is stored in a secure area of the USB device. The third element is a connection profile that is generated from the online service provider. The fourth element is a credential that is securely stored with the online service provider. The first two elements create a unique user identity. The second two elements create mutual authentication.
Claims
exact text as granted — not AI-modified1 . Secure electronic device networks comprising:
A plurality of independent networks; Each independent network having a plurality of end user devices attachable to the network forming nodes thereof, each end user device having input plugs for coupling accessories thereto; A network managing system which is configured for mutually authenticating the end user devices attached to the network and wherein the network management system includes a private credential for each network host; A plurality of authenticating keys, with each key attachable to an input plug of an end user device, each key containing at least three authenticating credentials therein at least when following connection between at least a portion of the network managing system and the key, wherein the three authentication credentials include i) a first credential in the form of a global identifier including a certificate having selected user information, ii) an encrypted private credential which is generated by the associated network, and iii) a connection profile generated by the associated network, whereby the mutual authenticating is accomplished through the confirmation of the presence of the four credentials including the private credential from the network managing system and the three authentication credentials on the key when the key is coupled to the end users device and wherein this presence is validated prior to granting access to the network.
2 . The secure electronic device networks as claimed in claim 1 wherein each key attaches to a universal serial bus port of the end user device.
3 . The secure electronic device networks as claimed in claim 2 wherein the network managing system utilizes at least one additional network access validating tool which is distinct from the authenticating keys for access to the networks.
4 . The secure electronic device networks as claimed in claim 3 wherein the network managing system utilizes at least one of a user inputted Personal Identification Number and a user inputted password.
5 . The secure electronic device networks as claimed in claim 1 wherein selective end user devices may be coupled to multiple local networks each key adaptable for use with authentication of the multiple networks.
6 . The secure electronic device networks as claimed in claim 5 wherein each key includes password management software thereon
7 . The secure electronic device networks as claimed in claim 1 wherein each key further includes network protection software.
8 . The secure electronic device networks as claimed in claim 1 wherein at least one independent network is a Wi-Fi network.
9 . The secure electronic device networks as claimed in claim 1 wherein end user devices is coupled to the local networks via the internet.
10 . A method of network management comprising the steps of using a plurality of authenticating keys, with each key attachable to an input plug of an end user device, each key containing at least three authenticating credentials therein at least when following connection between at least a portion of the network managing system and the key, wherein the three authentication credentials include i) a first credential in the form of a global identifier including a certificate having selected user information, ii) an encrypted private credential which is generated by the associated network, and iii) a connection profile generated by the associated network, whereby the mutual authenticating is accomplished through the confirmation of the presence of the four credentials including the private credential from the network managing system and the three authentication credentials on the key when the key is coupled to the end users device, wherein each key includes password management software thereon, and wherein each key further includes network protection software, and wherein at least one independent network is a Wi-Fi network.
11 . An authenticating key for access of an end users electronic device to a plurality of independent networks each having a network management system, the authenticating key comprising a key attachment mechanism which is attachable to an input plug of an end user device, each key configured to create a communication link between the network management system of each selected independent network and the key, each key further containing three authentication credentials.
12 . The authenticating key as claimed in claim 11 including i) a first credential in the form of a global identifier including a certificate having selected user information, ii) an encrypted private credential which is generated by the associated network, and iii) a connection profile generated by the associated network wherein the network can verify the presence of the authentication credentials on the key for that network coupled to the end users device through the communication link prior to granting access to the selected network, and wherein each key further includes network protection software.
13 . The authenticating key as claimed in claim 12 wherein each key includes password management software.
14 . The authenticating key claimed in claim 13 wherein each key attaches to a universal serial bus port of the end user device.
15 . The authenticating key as claimed in claim 14 wherein each key is a USB port flash drive.Join the waitlist — get patent alerts
Track US2010191960A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.