Method and system for improved security
Abstract
An improved authentication method and system is provided where a user securely accesses a variety of target servers for online email, online banking, credit card purchases, ecommerce, brokerage services, corporate databases, and online content (movies, music and software). The method involves a bridge server performing authentication tasks that allow a user to access a server or a group of servers with multiple security levels. The method eliminates the need for the user to remember multiple usernames/passwords for each target server. The method also allows one bridge server and one set of security devices to be used to authenticate the user for multiple servers, thereby reducing security costs and increasing user convenience. A location-based password-ID generating device is also described for secure location-based access.
Claims
exact text as granted — not AI-modified1 - 18 . (canceled)
19 . A device for location-based authentication of a user by an authenticating server, the device comprising:
a positioning module for determining a set of coordinates for the device; a randomizer for generating a password based on the set of coordinates; a display for displaying the generated password, wherein the generated password is used by the user as one of a set of authentication information to send to the authentication server, wherein the user is authenticated only when the estimated set of coordinates are within a pre-determined threshold.
20 . The device of claim 19 , wherein the pre-determined threshold for the set of coordinates is set by the user through an interface on the authenticating server.
21 . The device of claim 19 further comprising:
a memory;
a unique secure seed stored in the memory, the seed being synchronized with a seed stored on the authenticating server,
wherein generating the password by the randomizer further comprises using the unique secure seed.
22 . The device of claim 19 further comprising a counter for generating a count, wherein generating the password by the randomizer further comprises using the generated count to generate the password.
23 . The device of claim 22 , wherein the counter is synchronized with a counter stored in the authenticating server at a time the device is being released.
24 . The device of claim 22 , wherein the counter is synchronized with a counter in the authenticating server based on an identification provided by the user to the authentication server.
25 . The device of claim 22 further comprising an internal power source for providing power to the memory and the counter.
26 . The device of claim 19 further comprising an interface for connecting to an external device for receiving power for the partitioning module, the randomizer, and the display.
27 . The device of claim 26 , wherein the interface for connecting to the external device is a universal serial bus (USB).
28 . The device is claim 19 , wherein the device is integrated in a mobile device, wherein the device receives power from the mobile device.
29 . The device of claim 19 , wherein the generated password is utilized by the authentication server to authenticate the user for accessing a set of servers communicatively coupled to the authenticating server.
30 . The device of claim 19 , wherein the partitioning module determines the set of coordinates for the device based on a media access control identification of an access point communicatively coupled to the device.
31 . The device of claim 19 , wherein the partitioning module determines the set of coordinates for the device using global positioning system (GPS).Join the waitlist — get patent alerts
Track US2016226864A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.