US2014109203A1PendingUtilityA1

Multichannel device utilizing a centralized out-of-band authentication system (cobas)

Assignee: STRIKEFORCE TECHNOLOGIES INCPriority: Sep 5, 2000Filed: Oct 17, 2013Published: Apr 17, 2014
Est. expirySep 5, 2020(expired)· nominal 20-yr term from priority
Inventors:Ram Pemmaraju
H04L 9/3215H04L 9/3231G06F 21/32G06F 21/42H04L 63/083H04L 63/18H04L 63/102H04L 63/0861H04L 63/08
53
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A multichannel security system is disclosed, which system is for granting and denying access to a host computer in response to a demand from an access-seeking individual and computer. The access-seeker has a peripheral device operative within an authentication channel to communicate with the security system. The access-seeker initially presents identification and password data over an access channel which is intercepted and transmitted to the security computer. The security computer then communicates with the access-seeker. A biometric analyzer—a voice or fingerprint recognition device—operates upon instructions from the authentication program to analyze the monitored parameter of the individual. In the security computer, a comparator matches the biometric sample with stored data, and, upon obtaining a match, provides authentication. The security computer instructs the host computer to grant access and communicates the same to the access-seeker, whereupon access is initiated over the access channel.

Claims

exact text as granted — not AI-modified
1 - 20 . (canceled) 
     
     
         21 . A system for granting or denying use of a computer by a user, said system comprising:
 a first communication path for enabling the use of the computer by the user; and   a second and different communication path for communicating over said second path to a peripheral device of said user, receiving a response to said communication from the user over said second path, and granting or denying the use of the computer in accordance with the response.   
     
     
         22 . The system of  claim 21 , wherein said first and second communication paths are each one of the Internet and a wireless network. 
     
     
         23 . The system of  claim 21 , wherein the response comprises biometric data. 
     
     
         24 . The system of  claim 23 , wherein said biometric data comprise fingerprint data. 
     
     
         25 . A method for granting or denying use of a computer, said method comprising:
 (a) establishing a first communication channel via a computer network between a user at a first location and the computer at a second location;   (b) retrieving an address for the user for establishing a second and different communication channel with said user;   (c) initiating communication with the user at the retrieved address via the second communication channel;   (d) transmitting at least one first authentication communication to the user using said second communication channel;   (e) receiving a second authentication communication from said user over said second communication channel;   (f) determining whether to grant or to deny the use of the computer by the user in accordance with the second authentication communication;   (g) granting the use of the computer by the user only if it is determined in step (f) that the use of the computer by the user should be granted; and   (h) denying the use of the computer by the user if it is not determined in step (f) that the use of the computer should be granted.   
     
     
         26 . The method of  claim 25 , wherein said first and second communication channels are each one of the Internet and a wireless network. 
     
     
         27 . The method of  claim 25 , wherein said first authentication communication is a request for biometric data, and wherein said second authentication communication comprises said biometric data. 
     
     
         28 . The method of  claim 27 , wherein said biometric data comprise fingerprint data. 
     
     
         29 . A system for granting or denying use of a computer by a user, the system comprising:
 an access channel for receiving information for using said computer; and   an authentication channel, separate from said access channel, said authentication channel comprising:
 a security computer for communicating a use instruction to said computer and for communicating with a peripheral device of said user; 
 a database having at least one address record of said peripheral device; 
 a prompt mechanism for instructing said user to enter a response into and transmit said response from said peripheral device; and 
 a comparator for granting or denying use demands in response to the transmission of said response, wherein said security computer outputs said use instruction to the computer to either grant or deny the use of said computer. 
   
     
     
         30 . The system of  claim 29 , wherein:
 said peripheral device is a telephone with a tone generating keypad for entering data; and   said prompt mechanism outputs an auditory message describing the authentication data to be entered.   
     
     
         31 . The system of  claim 29 , wherein said comparator comprises:
 a biometric analyzer for analyzing a monitored parameter of said user; and   a biometric parameter database addressable by said biometric analyzer for retrieval of a previously registered sample of said user.   
     
     
         32 . The system of  claim 31 , wherein said biometric analyzer comprises a fingerprint-verification analyzer. 
     
     
         33 . A method for granting or denying use of a computer by a user, the method comprising:
 (a) receiving, over an access channel, information for using said computer;   (b) retrieving, from a database, at least one address record of peripheral device used by said user;   (c) instructing said user to enter response data into and transmit said response data from said peripheral device, said peripheral device transmitting said response data over an authentication channel that is separate from said access channel; and   (d) granting or denying use demands in response to the transmission of said response data and outputting a use instruction to the computer to either grant or deny the use of the computer.   
     
     
         34 . The method of  claim 33 , wherein the response data comprise biometric data. 
     
     
         35 . The method of  claim 34 , wherein said biometric data comprise fingerprint data. 
     
     
         36 . A system for authenticating a user of a computer, said system comprising:
 a first communication path for enabling use of the computer by the user; and   a second and different communication path for communicating over said second path to a peripheral device of said user, receiving a response to said communication from the user over said second path, and authenticating the use of the computer by the user in accordance with the response.   
     
     
         37 . The system of  claim 36 , wherein said first and second communication paths are each one of the Internet and a wireless network. 
     
     
         38 . The system of  claim 36 , wherein the response comprises biometric data. 
     
     
         39 . The system of  claim 38 , wherein said biometric data comprise fingerprint data. 
     
     
         40 . A method for authenticating a user of a computer, said method comprising:
 (a) establishing a first communication channel via a computer network between the user at a first location and the computer at a second location;   (b) retrieving an address for the user for establishing a second and different communication channel with said user;   (c) initiating communication with the user at the retrieved address via the second communication channel;   (d) transmitting at least one first authentication communication to the user using said second communication channel;   (e) receiving a second authentication communication from said user over said second communication channel;   (f) determining whether to authenticate the user in accordance with the second authentication communication; and   (g) authenticating the user only if it is determined in step (f) that the user should be authenticated.   
     
     
         41 . The method of  claim 40 , wherein said first and second communication channels are each one of the Internet and a wireless network. 
     
     
         42 . The method of  claim 40 , wherein said first authentication communication is a request for biometric data, and wherein said second authentication communication comprises said biometric data. 
     
     
         43 . The method of  claim 42 , wherein said biometric data comprise fingerprint data. 
     
     
         44 . A system for authenticating a transaction to be performed by a user using a computer, said system comprising:
 a first communication path for enabling use of the computer by the user; and   a second and different communication path for communicating over said second path to a peripheral device of said user, receiving a response to said communication from the user over said second path, and authenticating the transaction in accordance with the response.   
     
     
         45 . The system of  claim 44 , wherein said first and second communication paths are each one of the Internet and a wireless network. 
     
     
         46 . The system of  claim 45 , wherein the response comprises biometric data. 
     
     
         47 . The system of  claim 46 , wherein said biometric data comprise fingerprint data. 
     
     
         48 . A method for authenticating a transaction to be performed by a user using a computer, said method comprising:
 (a) establishing a first communication channel via a computer network between the user at a first location and the computer at a second location;   (b) retrieving an address for the user for establishing a second and different communication channel with said user;   (c) initiating communication with the user at the retrieved address via the second communication channel;   (d) transmitting at least one first authentication communication to the user using said second communication channel;   (e) receiving a second authentication communication from said user over said second communication channel;   (f) determining whether to authenticate the transaction in accordance with the second authentication communication; and   (g) authenticating the transaction only if it is determined in step (f) that the transaction should be authenticated.   
     
     
         49 . The method of  claim 48 , wherein said first and second communication channels are each one of the Internet and a wireless network. 
     
     
         50 . The method of  claim 48 , wherein said first authentication communication is a request for biometric data, and wherein said second authentication communication comprises said biometric data. 
     
     
         51 . The method of  claim 50 , wherein said biometric data comprise fingerprint data.

Join the waitlist — get patent alerts

Track US2014109203A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.