US2018341756A1PendingUtilityA1

Technologies for authenticating a user of a computing device based on authentication context state

Assignee: INTEL CORPPriority: Dec 27, 2014Filed: May 17, 2018Published: Nov 29, 2018
Est. expiryDec 27, 2034(~8.4 yrs left)· nominal 20-yr term from priority
G06F 21/41H04L 9/3226G06F 21/31G06F 2221/2147H04W 88/02G06F 21/88G06F 21/53H04L 63/0815H04W 12/06G06F 2221/2111G06F 2221/2105H04L 2209/805H04L 2209/127H04W 12/30H04W 12/63H04W 12/68H04W 12/65
56
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Technologies for authenticating a user of a computing device based on an authentication context state includes generating context state outputs indicative of various context states of a mobile computing device based on sensor data generated by sensors of the mobile computing device. An authentication manager of the computing device implements an authentication state machine to authenticate a user of the computing device. The authentication state machine includes a number of authentication states, and each authentication state includes one or more transitions to another authentication state. Each of the transitions is dependent upon a context state output. The computing device may also include a device security manager, which implements a security state machine that includes a number of security states. Transition between security states is dependent upon the present authentication state of the user. The device security manager may implement a different security function in each security state.

Claims

exact text as granted — not AI-modified
1 . A mobile computing device for authenticating a user, the mobile computing device comprising:
 a plurality of sensors to generate sensor data indicative of a context of the mobile computing device;   a context classifier engine comprising a plurality of context classifiers, wherein each context classifier is to generate, based on sensor data from at least one of the plurality of sensors, a context state output indicative of a corresponding context of the mobile computing device; and   an authentication manager module to determine an authentication state of a user of the mobile computing device based on an authentication state machine, wherein the authentication state machine includes a plurality of authentication states and each authentication state has at least one transition to another authentication state, wherein each transition between authentication states is dependent upon at least one context state output of the context classifier engine.   
     
     
         2 . The mobile computing device of  claim 1 , wherein the authentication manager module is to determine a present authentication state based on the authentication state machine and the context state outputs of the context classifier engine. 
     
     
         3 . The mobile computing device of  claim 2 , wherein the authentication state machine is to transition from the present authentication state to a new authentication state in response to a change in at least one context state output of the context classifier. 
     
     
         4 . The mobile computing device of  claim 3 , wherein the authentication manager module is to notify a device security manager module of the mobile computing device in response to the transition to the new authentication state. 
     
     
         5 . The mobile computing device of  claim 4 , wherein the device security manager module is to determine a present security state of the mobile computing device based on the new authentication state and implement a corresponding security function on the mobile computing device based on the present security state. 
     
     
         6 . The mobile computing device of  claim 1 , further comprising a device security manager module to implement one of a plurality of security functions based on a security state machine, wherein the security state machine includes a plurality of security states and each security state includes at least one transition to another security state, wherein each transition between security states is dependent upon the present authentication state of the authentication state machine. 
     
     
         7 . The mobile computing device of  claim 6 , wherein each transition between security states is dependent upon the present authentication state of the authentication state machine and an instruction received from an application executed by the mobile computing device. 
     
     
         8 . The mobile computing device of  claim 1 , further wherein the authentication manager module is to notify another computing device of the determined authentication state of the user to authenticate the user to the another computing device to facilitate access by the user to a resource available on the another computing device. 
     
     
         9 . The mobile computing device of  claim 8 , wherein to notify the another computing device comprises to authenticate the user to the another computing device to reduce an occurrence of active user authentication by the another computing device for access to the resource. 
     
     
         10 . One or more computer-readable storage media comprising a plurality of instructions stored thereon that, in response to execution, cause a computing device to:
 generate, by a plurality of sensors of the mobile computing device, sensor data indicative of a context of the mobile computing device;   generate, by each context classifier of a plurality of context classifiers of a context classifier engine of the mobile computing device, a context state output indicative of a corresponding context of the mobile computing device based on sensor data from at least one of the plurality of sensors;   determine, by an authentication manager module of the mobile computing device, an authentication state of a user of the mobile computing device based on an authentication state machine, wherein the authentication state machine includes a plurality of authentication states and each authentication state has at least one transition to another authentication state, wherein each transition between authentication states is dependent upon at least one context state output of the context classifier engine.   
     
     
         11 . The one or more computer-readable storage media of  claim 10 , wherein to determine an authentication state of the user comprises to determine a present authentication state of the user based on the authentication state machine and the context state outputs of the context classifier engine. 
     
     
         12 . The one or more computer-readable storage media of  claim 11 , wherein the plurality of instructions further cause the computing device to transition the authentication state machine from the present authentication state to a new authentication state in response to a change in at least one context state output of the context classifier. 
     
     
         13 . The one or more computer-readable storage media of  claim 12 , wherein the plurality of instructions further cause the computing device to notify a device security manager module of the mobile computing device in response to the transition to the new authentication state. 
     
     
         14 . The one or more computer-readable storage media of  claim 13 , wherein the plurality of instructions further cause the computing device to determine, by the device security manager module, a present security state of the mobile computing device based on the new authentication state and implement a corresponding security function on the mobile computing device based on the present security state. 
     
     
         15 . The one or more computer-readable storage media of  claim 10 , wherein the plurality of instructions further cause the computing device to implement, by a device security manager module of the mobile computing device, one of a plurality of security functions based on a security state machine, wherein the security state machine includes a plurality of security states and each security state includes at least one transition to another security state, wherein each transition between security states is dependent upon the present authentication state of the authentication state machine. 
     
     
         16 . The one or more computer-readable storage media of  claim 15 , where each transition between security states of the security state machine is dependent upon the present authentication state of the authentication state machine and an instruction received from an application executed by the mobile computing device. 
     
     
         17 . The one or more computer-readable storage media of  claim 10 , wherein the plurality of instructions further cause the computing device to notify another computing device of the determined authentication state of the user to authenticate the user to the another computing device to facilitate access by the user to a resource available on the another computing device. 
     
     
         18 . A method for authenticating a user of a mobile computing device, the method comprising:
 generating, by a plurality of sensors of the mobile computing device, sensor data indicative of a context of the mobile computing device;   generating, by each context classifier of a plurality of context classifiers of a context classifier engine of the mobile computing device, a context state output indicative of a corresponding context of the mobile computing device based on sensor data from at least one of the plurality of sensors;   determining, by an authentication manager module of the mobile computing device, an authentication state of a user of the mobile computing device based on an authentication state machine, wherein the authentication state machine includes a plurality of authentication states and each authentication state has at least one transition to another authentication state, wherein each transition between authentication states is dependent upon at least one context state output of the context classifier engine.   
     
     
         19 . The method of  claim 18 , wherein determining an authentication state of the user comprises determining a present authentication state of the user based on the authentication state machine and the context state outputs of the context classifier engine. 
     
     
         20 . The method of  claim 19 , further comprising transitioning the authentication state machine from the present authentication state to a new authentication state in response to a change in at least one context state output of the context classifier. 
     
     
         21 - 25 . (canceled)

Join the waitlist — get patent alerts

Track US2018341756A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.