US2016269382A1PendingUtilityA1

Secure Distribution of Non-Privileged Authentication Credentials

Assignee: TELECOMM SYSTEMS INCPriority: Apr 11, 2012Filed: Feb 29, 2016Published: Sep 15, 2016
Est. expiryApr 11, 2032(~5.7 yrs left)· nominal 20-yr term from priority
H04L 63/06H04L 63/107H04L 63/08H04L 67/42H04L 63/18H04L 67/01
46
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

An authentication credentials push service (ACPS) that securely pushes non-privileged authentication credentials to registered client entities. The ACPS comprises a classification server and a push server to provide access to non-privileged authentication credentials absent a pull transaction. The classification server in the ACPS classifies authentication credentials as either privileged (i.e. private, forgeable) or non-privileged (i.e. non-forgeable, nonsensitive). Credentials identified as being of a privileged nature are treated with restricted access. Alternatively, credentials classified as being of a non-privileged nature are made available for the push service. Authentication servers register with the ACPS to become consumers of the push service. A push server within the ACPS pushes non-privileged authentication credentials to registered authentication servers at predetermined intervals. Individual authentication credentials push services (ACPS) have access to different authentication credentials. An authentication server can use a dynamic name service (DNS) lookup to find a specific authentication credentials push service (ACPS).

Claims

exact text as granted — not AI-modified
1 - 16 . (canceled) 
     
     
         17 . A method of pushing authenticating credentials without requiring a pull transaction, comprising:
 acquiring, at a physical authentication credentials push server, access to non-privileged authentication credentials;   registering, at said physical authentication credentials push server, a physical authentication server to receive push notifications absent a pull request;   pushing repeatedly, from said physical authentication credentials push server, said non-privileged authentication credentials to said physical authentication server registered to receive said push notifications.   
     
     
         18 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 17 , wherein:
 said access to non-privileged authentication data is acquired via an out of band communication channel.   
     
     
         19 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 17 , wherein said non-privileged authentication credentials comprise:
 non-forgeable information.   
     
     
         20 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 17 , wherein said non-privileged authentication credentials comprise:
 non-sensitive, non-forgeable information.   
     
     
         21 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 17 , further comprising:
 restricting, at said physical authentication credentials push server, access to privileged authentication credentials.   
     
     
         22 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 17 , further comprising:
 registering said physical authentication credentials push server with a domain name service (DNS) system.   
     
     
         23 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 17 , further comprising:
 communicating via a domain name service (DNS) lookup to acquire information sufficient to connect with said physical authentication credentials push server.   
     
     
         24 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 17 , further comprising:
 immediately pushing, from said physical authentication credentials push server, said non-privileged authentication credentials to said physical authentication server registered to receive said push notifications.   
     
     
         25 . A method of pushing authenticating credentials without requiring a pull transaction, comprising:
 acquiring, at a physical authentication credentials push server, access to non-privileged authentication credentials;   registering, at said physical authentication credentials push server, a plurality of physical authentication servers to receive push notifications absent a pull request;   pushing repeatedly, from said physical authentication credentials push server, said non-privileged authentication credentials to said plurality of physical authentication servers registered to receive said push notifications based on a total number of updates of said non-privileged authentication credentials.   
     
     
         26 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 25 , wherein:
 said access to non-privileged authentication data is acquired via an out of band communication channel.   
     
     
         27 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 25 , wherein said non-privileged authentication credentials comprise:
 non-forgeable information.   
     
     
         28 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 25 , wherein said non-privileged authentication credentials comprise:
 non-sensitive, non-forgeable information.   
     
     
         29 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 25 , further comprising:
 restricting, at said physical authentication credentials push server, access to privileged authentication credentials.   
     
     
         30 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 25 , further comprising:
 registering said physical authentication credentials push server with a domain name service (DNS) system.   
     
     
         31 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 25 , further comprising:
 communicating via a domain name service (DNS) lookup to acquire information sufficient to connect with said physical authentication credentials push server.   
     
     
         32 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 25 , further comprising:
 immediately pushing, from said physical authentication credentials push server, said non-privileged authentication credentials to said physical authentication server registered to receive said push notifications.   
     
     
         33 . A method of pushing authenticating credentials without requiring a pull transaction, comprising:
 acquiring, at a physical authentication credentials push server, access to non-privileged authentication credentials;   registering, at said physical authentication credentials push server, a plurality of physical authentication servers to receive push notifications absent a pull request;   pushing periodically, from said physical authentication credentials push server, said non-privileged authentication credentials to said plurality of physical authentication servers registered to receive said push notifications based on a total number of time intervals.   
     
     
         34 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 33 , wherein:
 said access to non-privileged authentication data is acquired via an out of band communication channel.   
     
     
         35 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 33 , further comprising:
 communicating via a domain name service (DNS) lookup to acquire information sufficient to connect with said physical authentication credentials push server.   
     
     
         36 . The method of pushing authenticating credentials without requiring a pull transaction according to  claim 33 , further comprising:
 immediately pushing, from said physical authentication credentials push server, said non-privileged authentication credentials to said physical authentication server registered to receive said push notifications.

Join the waitlist — get patent alerts

Track US2016269382A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.