发明名称 Secure access of mobile devices using passwords
摘要 Enhanced security measures are provided for accessing applications or data on a client device using an encryption scheme. The client device receives authorization to access the applications or data from a server that compares a password received at the client device with a password previously stored in the server. In addition to comparing the passwords, the server may implement additional security measures such as checking geographic locations of the client device or monitoring for suspicious patterns of usage on the client device. Further, different passwords may be used depending on whether the client device has connectivity with the server. When the connectivity is not available, a longer or more complicated password may be used instead of a shorter or simple password to provide added security. When the user is authenticated, a key is made available to access applications or data on the client device.
申请公布号 US9021248(B2) 申请公布日期 2015.04.28
申请号 US201313973817 申请日期 2013.08.22
申请人 SolidMobile, Inc. 发明人 Jung Nae Kwon
分类号 H04L29/06;H04L9/32;G06F21/00;G06F21/60 主分类号 H04L29/06
代理机构 Fenwick & West LLP 代理人 Fenwick & West LLP
主权项 1. A method of authenticating a user on a first computing device, comprising: receiving a user input at a first time from a user of the first computing device for authenticating the user; generating first information derived from the user input at the first computing device; sending the first information to a second computing device for comparison with second information stored in the second computing device, the second information derived from a first password provided by the user at a second time preceding the first time; receiving an unencrypted server token from the second computing device responsive to the second computing device authenticating the user based at least on matching of the first information and the second information; using the unencrypted server token to access an application or encrypted data in the first computing device; receiving a second password at a third time from the user of the first computing device for authentication of the user, the communication between the first and the second computing devices unavailable at the third time and decrypting an encrypted server token stored in the first computing device using the second password to obtain the unencrypted server token.
地址 San Jose CA US