METHODS AND APPARATUS FOR USER AUTHENTICATION AND HUMAN INTENT VERIFICATION IN MOBILE DEVICES

    公开(公告)号:US20190387402A1

    公开(公告)日:2019-12-19

    申请号:US16557770

    申请日:2019-08-30

    Applicant: Apple Inc.

    Abstract: Methods and apparatus for user authentication and human intent verification of administrative operations for eSIMs of an eUICC included in a mobile device are disclosed. Certain administrative operations, such as import, modification, and/or export, of an eSIM and/or for an eUICCs firmware can require user authentication and/or human intent verification before execution of the administrative operations are performed or completed by the mobile device. A user of the mobile device provides information to link an external user account to an eSIM upon (or subsequent to) installation on the eUICC. User credentials, such as a user name and password, and/or information generated therefrom, can be used to authenticate the user with an external server. In response to successful user authentication, the administrative operations are performed. Human intent verification can also be performed in conjunction with user authentication to prevent malware from interfering with eSIM and/or eUICC functions of the mobile device.

    METHODS AND APPARATUS FOR USER AUTHENTICATION AND HUMAN INTENT VERIFICATION IN MOBILE DEVICES
    26.
    发明申请
    METHODS AND APPARATUS FOR USER AUTHENTICATION AND HUMAN INTENT VERIFICATION IN MOBILE DEVICES 有权
    移动设备用户认证和人员验证的方法和设备

    公开(公告)号:US20160277930A1

    公开(公告)日:2016-09-22

    申请号:US15076527

    申请日:2016-03-21

    Applicant: Apple Inc.

    Abstract: Methods and apparatus for user authentication and human intent verification of administrative operations for eSIMs of an eUICC included in a mobile device are disclosed. Certain administrative operations, such as import, modification, and/or export, of an eSIM and/or for an eUICCs firmware can require user authentication and/or human intent verification before execution of the administrative operations are performed or completed by the mobile device. A user of the mobile device provides information to link an external user account to an eSIM upon (or subsequent to) installation on the eUICC. User credentials, such as a user name and password, and/or information generated therefrom, can be used to authenticate the user with an external server. In response to successful user authentication, the administrative operations are performed. Human intent verification can also be performed in conjunction with user authentication to prevent malware from interfering with eSIM and/or eUICC functions of the mobile device.

    Abstract translation: 公开了用于移动设备中包括的eUICC的eSIM的管理操作的用户认证和人为意图验证的方法和装置。 eSIM和/或eUICC固件的某些管理操作(例如导入,修改和/或导出)可能需要在由移动设备执行或完成执行管理操作之前的用户认证和/或人为意图验证。 移动设备的用户提供在eUICC上(或之后)安装时将外部用户帐户链接到eSIM的信息。 可以使用诸如用户名和密码的用户凭证和/或从其生成的信息来用外部服务器认证用户。 响应成功的用户认证,执行管理操作。 人员意图验证还可以与用户认证一起执行,以防止恶意软件干扰移动设备的eSIM和/或eUICC功能。

    System and Method for Using Credentials of a First Client Station to Authenticate a Second Client Station
    27.
    发明申请
    System and Method for Using Credentials of a First Client Station to Authenticate a Second Client Station 有权
    使用第一客户端站的凭证来验证第二客户端站的系统和方法

    公开(公告)号:US20150229639A1

    公开(公告)日:2015-08-13

    申请号:US14502786

    申请日:2014-09-30

    Applicant: APPLE INC.

    Abstract: Described are methods that allow credentials of a first client station to authenticate a second client station. An exemplary method includes associating a first client station with a second client station, the first client station including credential information, the associating authorizing the second client station to use the credential information, transmitting, by the second client station, an association request to a network, the network utilizing the credential information to authorize a connection, the second client station configured to perform a proxy functionality for requests received from the network to be forwarded to the first client station and responses received from the first client station to be forwarded to the network, determining, by the network, whether the credential information received from the second client station is authenticated and establishing a connection between the second client station and the network using the credential information of the first client station.

    Abstract translation: 描述了允许第一客户端的凭证来验证第二客户端的方法。 一种示例性方法包括将第一客户端站与第二客户站相关联,第一客户端站包括凭证信息,关联授权第二客户端站使用凭证信息,由第二客户站向网络发送关联请求 ,所述网络利用所述凭证信息来授权连接,所述第二客户端站被配置为执行从所述网络接收到的请求被转发到所述第一客户端的请求的代理功能,以及从所述第一客户站接收的要被转发到所述网络的响应 由所述网络确定从所述第二客户端站接收到的所述凭证信息是否被认证,并且使用所述第一客户站的凭证信息来建立所述第二客户端站与所述网络之间的连接。

Patent Agency Ranking