发明名称 Graduated authentication in an identity management system
摘要 A method and system for graduated security in an identity management system utilize differing levels of time sensitivity, channel security and authentication security to provide a multi-dimensional approach to providing the right fit for differing identity requests. The differing levels of security can be selected by user preference, membersite request or homesite policy.
申请公布号 US9398020(B2) 申请公布日期 2016.07.19
申请号 US201514622722 申请日期 2015.02.13
申请人 Callahan Cellular L.L.C. 发明人 Hardt Dick C.
分类号 G06F7/04;G06F15/16;G06F17/30;H04L29/06;G06F21/60 主分类号 G06F7/04
代理机构 Perkins Coie LLP 代理人 Perkins Coie LLP
主权项 1. A computer-implemented method for implementing variable transaction security levels, the method comprising: receiving, using one or more hardware processors, at a first computing system, from a second computing system, a request for information, wherein responding to the request requires two or more transactions and wherein: at least a first of the two or more transactions is associated with a first transaction security level;at least a second of the two or more transactions is associated with a second transaction security level different from the first transaction security level; andeach of the first transaction security level and the second transaction security level comprise at least one of: a transaction authentication security level, a transaction channel security level, or a transaction time sensitivity security level; and performing, using the one or more hardware processors, the first transaction at the first transaction security level and performing the second transaction at the second transaction security level, each performing accomplished by: selecting, using the one or more hardware processors, a channel with a channel security level to perform the transaction, the channel selected based on a correspondence between the transaction channel security level for the transaction and the channel security level of the selected channel;selecting, using the one or more hardware processors, an authentication mechanism with an authentication security level to perform the transaction, the authentication mechanism selected based on a correspondence between the transaction authentication security level for the transaction and the authentication security level; orperforming, using the one or more hardware processors, at least part of the transaction within a specified time limit corresponding to the transaction time sensitivity security level for the transaction.
地址 Wilmington DE US