METHODS OF ROBUST MULTI-FACTOR AUTHENTICATION AND AUTHORIZATION AND SYSTEMS THEREOF
摘要
Methods and systems of user authentication and authorization are provided. An application hosted in a server is in communication with a user computing device via a first communication network and the server application is in further communication with a user mobile device via a second communication network. The authentication method begins with a user sending a login request from the user computing device to the server application. The server application generates and sends a challenge to the user mobile device. The user mobile device then derives and returns a response to the server via the second communication network for verification. The user mobile device further derives and displays a context-based one-time passcode (OTP) for the user to submit from the user computing device to the server application via the first communication network for verification. The server subsequently verifies the received response and context-based OTP and grants the user access right if the verification is positive.