US2022035895A1PendingUtilityA1

Multi-Factor Authentication Using Positioning Data

Assignee: MICROSOFT TECHNOLOGY LICENSING LLCPriority: Nov 22, 2016Filed: Aug 10, 2021Published: Feb 3, 2022
Est. expiryNov 22, 2036(~10.3 yrs left)· nominal 20-yr term from priority
H04W 12/64H04W 4/021G06F 16/29H04W 12/06H04W 12/68G06F 21/30H04W 4/029H04L 2463/082H04W 12/08H04L 63/10H04L 63/107H04L 63/083H04L 63/0861G07C 9/32H04L 63/08G06F 3/017G06F 21/316
65
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Techniques described herein provide multi-factor authentication based on positioning data. Generally described, configurations disclosed herein enable a system to authorize a particular action using positioning data, and possibly other data, associated with an identity. For example, when a user wishes to change a password or access a secured account, the system can authenticate a user if a device associated with the user is located in the secure area. The system can authenticate a user if a requested operation and/or a predetermined pattern of movement associated with the user is detected. For instance, the system allows the user to change the password when the user's computer has followed a predetermined pattern of movement, and when one or more verification procedures meets one or more criteria while the location of the computing device is within the predetermined area.

Claims

exact text as granted — not AI-modified
1 - 20 . (canceled) 
     
     
         21 . A computing device comprising:
 a processing system comprising a processor; and   memory having computer-readable instructions stored thereupon that, when executed by the processor, cause the processor to:
 provide, to an authentication system, an authentication request to access a secured resource; 
 provide, to the authentication system, positioning data indicating that a current location of the computing device is within a predetermined geographic area that serves as a first authentication factor with respect to the authentication request; 
 receive, from the authentication system, instructions to perform a requested operation with respect to another computing device that is different than the computing device and that is physically present within the predetermined geographic area, performance of the requested operation serving as a second authentication factor with respect to the authentication request; 
 display the instructions to perform the requested operation with respect to the other computing device; and 
 in response to the authentication system confirming that the requested operation is performed with respect to the other computing device, receive an indication that the computing device has authenticated access to the secured resource. 
   
     
     
         22 . The computing device of  claim 21 , wherein the requested operation comprises inputting a fingerprint to the other computing device. 
     
     
         23 . The computing device of  claim 21 , wherein the requested operation comprises swiping a card at the other computing device. 
     
     
         24 . The computing device of  claim 21 , wherein the requested operation comprises clicking on a user interface element presented by the other computing device. 
     
     
         25 . The computing device of  claim 21 , wherein the requested operation comprises a user performing a gesture that is detectable by the other computing device. 
     
     
         26 . The computing device of  claim 21 , wherein the requested operation comprises a user moving in a predetermined pattern that is detectable by the other computing device. 
     
     
         27 . The computing device of  claim 21 , wherein the computer-readable instructions further cause the processor to provide an indication that the computing device is outside of the predetermined geographic area thereby causing the authentication system to terminate the authenticated access to the secured resource. 
     
     
         28 . A method comprising:
 providing, by a computing device to an authentication system, an authentication request to access a secured resource;   providing, by the computing device to the authentication system, positioning data indicating that a current location of the computing device is within a predetermined geographic area that serves as a first authentication factor with respect to the authentication request;   receiving, at the computing device from the authentication system, instructions to perform a requested operation with respect to another computing device that is different than the computing device and that is physically present within the predetermined geographic area, performance of the requested operation serving as a second authentication factor with respect to the authentication request;   displaying, by the computing device, the instructions to perform the requested operation with respect to the other computing device; and   in response to the authentication system confirming that the requested operation is performed with respect to the other computing device, receiving, at the computing device, an indication that the computing device has authenticated access to the secured resource.   
     
     
         29 . The method of  claim 28 , wherein the requested operation comprises inputting a fingerprint to the other computing device. 
     
     
         30 . The method of  claim 28 , wherein the requested operation comprises swiping a card at the other computing device. 
     
     
         31 . The method of  claim 28 , wherein the requested operation comprises clicking on a user interface element presented by the other computing device. 
     
     
         32 . The method of  claim 28 , wherein the requested operation comprises a user performing a gesture that is detectable by the other computing device. 
     
     
         33 . The method of  claim 28 , wherein the requested operation comprises a user moving in a predetermined pattern that is detectable by the other computing device. 
     
     
         34 . The method of  claim 28 , further comprising providing an indication that the computing device is outside of the predetermined geographic area thereby causing the authentication system to terminate the authenticated access to the secured resource. 
     
     
         35 . A computer storage medium having instructions stored thereupon that, when executed by a processor, cause the processor to:
 provide, to an authentication system, an authentication request to access a secured resource;   provide, to the authentication system, positioning data indicating that a current location of the computing device is within a predetermined geographic area that serves as a first authentication factor with respect to the authentication request;   receive, from the authentication system, instructions to perform a requested operation with respect to another computing device that is different than the computing device and that is physically present within the predetermined geographic area, performance of the requested operation serving as a second authentication factor with respect to the authentication request;   display the instructions to perform the requested operation with respect to the other computing device; and   in response to the authentication system confirming that the requested operation is performed with respect to the other computing device, receive an indication that the computing device has authenticated access to the secured resource.   
     
     
         36 . The computer storage medium of  claim 35 , wherein the requested operation comprises inputting a fingerprint to the other computing device. 
     
     
         37 . The computer storage medium of  claim 35 , wherein the requested operation comprises swiping a card at the other computing device. 
     
     
         38 . The computer storage medium of  claim 35 , wherein the requested operation comprises clicking on a user interface element presented by the other computing device. 
     
     
         39 . The computer storage medium of  claim 35 , wherein the requested operation comprises a user performing a gesture that is detectable by the other computing device. 
     
     
         40 . The computer storage medium of  claim 35 , wherein the requested operation comprises a user moving in a predetermined pattern that is detectable by the other computing device.

Join the waitlist — get patent alerts

Track US2022035895A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.