- 专利标题: OUT-OF-BAND AUTHENTICATION BASED ON SECURE CHANNEL TO TRUSTED EXECUTION ENVIRONMENT ON CLIENT DEVICE
-
申请号: US16783028申请日: 2020-02-05
-
公开(公告)号: US20200287901A1公开(公告)日: 2020-09-10
- 发明人: George Avetisov , Bojan Simic , Roman Kadinsky
- 申请人: HYPR Corp.
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L9/08 ; G06F21/45
摘要:
Provided is a process that affords out-of-band authentication based on a secure channel to a trusted execution environment on a client device. The authentication process includes one or more authentication steps in addition to verifying any credentials provided by a client device. A notification may be transmitted by a server to a device other than the client device attempting to access the asset. That device may be a mobile device with a trusted execution environment storing user credential information, and the server may store representations of those credentials. The mobile device collects user input credentials and transmits representations for matching the previously stored representations and signed data for verification by the server that received data originated from the mobile device. The access attempt by the client is granted based in part on the result of authenticating the data received from the mobile device in a response to the notification.
公开/授权文献
信息查询