Secure Distribution of Non-Privileged Authentication Credentials
Abstract
An authentication credentials push service (ACPS) that securely pushes non-privileged authentication credentials to registered client entities. The ACPS comprises a classification server and a push server to provide access to non-privileged authentication credentials absent a pull transaction. The classification server in the ACPS classifies authentication credentials as either privileged (i.e. private, forgeable) or non-privileged (i.e. non-forgeable, nonsensitive). Credentials identified as being of a privileged nature are treated with restricted access. Alternatively, credentials classified as being of a non-privileged nature are made available for the push service. Authentication servers register with the ACPS to become consumers of the push service. A push server within the ACPS pushes non-privileged authentication credentials to registered authentication servers at predetermined intervals. Individual authentication credentials push services (ACPS) have access to different authentication credentials. An authentication server can use a dynamic name service (DNS) lookup to find a specific authentication credentials push service (ACPS).
Claims
exact text as granted — not AI-modified1 - 16 . (canceled)
17 . A method of pushing authenticating credentials without requiring a pull transaction, comprising:
acquiring, at a physical authentication credentials push server, access to non-privileged authentication credentials; registering, at said physical authentication credentials push server, a physical authentication server to receive push notifications absent a pull request; pushing repeatedly, from said physical authentication credentials push server, said non-privileged authentication credentials to said physical authentication server registered to receive said push notifications.
18 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 17 , wherein:
said access to non-privileged authentication data is acquired via an out of band communication channel.
19 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 17 , wherein said non-privileged authentication credentials comprise:
non-forgeable information.
20 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 17 , wherein said non-privileged authentication credentials comprise:
non-sensitive, non-forgeable information.
21 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 17 , further comprising:
restricting, at said physical authentication credentials push server, access to privileged authentication credentials.
22 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 17 , further comprising:
registering said physical authentication credentials push server with a domain name service (DNS) system.
23 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 17 , further comprising:
communicating via a domain name service (DNS) lookup to acquire information sufficient to connect with said physical authentication credentials push server.
24 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 17 , further comprising:
immediately pushing, from said physical authentication credentials push server, said non-privileged authentication credentials to said physical authentication server registered to receive said push notifications.
25 . A method of pushing authenticating credentials without requiring a pull transaction, comprising:
acquiring, at a physical authentication credentials push server, access to non-privileged authentication credentials; registering, at said physical authentication credentials push server, a plurality of physical authentication servers to receive push notifications absent a pull request; pushing repeatedly, from said physical authentication credentials push server, said non-privileged authentication credentials to said plurality of physical authentication servers registered to receive said push notifications based on a total number of updates of said non-privileged authentication credentials.
26 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 25 , wherein:
said access to non-privileged authentication data is acquired via an out of band communication channel.
27 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 25 , wherein said non-privileged authentication credentials comprise:
non-forgeable information.
28 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 25 , wherein said non-privileged authentication credentials comprise:
non-sensitive, non-forgeable information.
29 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 25 , further comprising:
restricting, at said physical authentication credentials push server, access to privileged authentication credentials.
30 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 25 , further comprising:
registering said physical authentication credentials push server with a domain name service (DNS) system.
31 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 25 , further comprising:
communicating via a domain name service (DNS) lookup to acquire information sufficient to connect with said physical authentication credentials push server.
32 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 25 , further comprising:
immediately pushing, from said physical authentication credentials push server, said non-privileged authentication credentials to said physical authentication server registered to receive said push notifications.
33 . A method of pushing authenticating credentials without requiring a pull transaction, comprising:
acquiring, at a physical authentication credentials push server, access to non-privileged authentication credentials; registering, at said physical authentication credentials push server, a plurality of physical authentication servers to receive push notifications absent a pull request; pushing periodically, from said physical authentication credentials push server, said non-privileged authentication credentials to said plurality of physical authentication servers registered to receive said push notifications based on a total number of time intervals.
34 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 33 , wherein:
said access to non-privileged authentication data is acquired via an out of band communication channel.
35 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 33 , further comprising:
communicating via a domain name service (DNS) lookup to acquire information sufficient to connect with said physical authentication credentials push server.
36 . The method of pushing authenticating credentials without requiring a pull transaction according to claim 33 , further comprising:
immediately pushing, from said physical authentication credentials push server, said non-privileged authentication credentials to said physical authentication server registered to receive said push notifications.Join the waitlist — get patent alerts
Track US2016269382A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.