InventorAssigneeApplicationNo. 11594341 filed on 11/07/2006US Classes:726/19Credential usageExaminersPrimary: Srivastava, VivekAssistant: Woldemariam, Nega Attorney, Agent or FirmInternational ClassH04L 9/32AbstractA method and apparatus for authorizing a user is provided. A requestor submits a request for challenge data to a device. The device generates the challenge data and provides the challenge data to the requestor. The requestor obtains response data that is responsive to the challenge data. The requestor may obtain the response data by providing, to a third party, the challenge data and identification information for the requestor. Upon the third party successfully validating the identity of the requestor, the third party provides the response data to the requestor. The requestor thereafter submits the response data to the device. In response to receiving the response data from the requestor, the device verifies the response data. Upon the device successfully verifying the response data, the device grants access to the requestor.Other References
Field of SearchMULTIPLE COMPUTER COMMUNICATION USING CRYPTOGRAPHYCentral trusted authority provides computer authentication Data authentication Particular communication authentication technique Mutual entity authentication Authentication of an entity and a message Authentication by digital signature representation or digital watermark ACCESS CONTROL OR AUTHENTICATION Credential Tokens (e.g., smartcards or dongles, etc.) Tokens (e.g., smartcards or dongles, etc.) Authorization PREVENTION OF UNAUTHORIZED USE OF DATA INCLUDING PREVENTION OF PIRACY, PRIVACY VIOLATIONS, OR UNAUTHORIZED DATA MODIFICATION Including authentication CELLULAR TELEPHONE CRYPTOGRAPHIC AUTHENTICATION Position dependent or authenticating 380/329 | |