PROVIDING AUTHENTICATION USING PREVIOUSLY-VALIDATED AUTHENTICATION CREDENTIALS

    公开(公告)号:US20160173477A1

    公开(公告)日:2016-06-16

    申请号:US15047562

    申请日:2016-02-18

    IPC分类号: H04L29/06

    摘要: Embodiments of the invention are directed to systems, methods and computer program products for providing authentication using previously-validated authentication credentials. An exemplary apparatus is configured to receive a request to access a framework application, request, from a user, one or more authentication credentials corresponding to a primary level of user authentication, receive and validate the one or more authentication credentials, create, using the framework application, an authentication token based at least partially on the validation of the primary level of user authentication, wherein the authentication token is accessible by a plurality of applications, receive a request, from the user, to access one or more non-framework applications; and authenticate the one or more non-framework applications, where authenticating the non-framework applications requires accessing the authentication token created by the framework application such that the authentication is at least partially based on the primary level of user authentication.

    Sorting mobile banking functions into authentication buckets
    3.
    发明授权
    Sorting mobile banking functions into authentication buckets 有权
    将移动银行功能分为认证桶

    公开(公告)号:US09305149B2

    公开(公告)日:2016-04-05

    申请号:US14175956

    申请日:2014-02-07

    摘要: Embodiments are directed to systems, methods and computer program products for sorting mobile banking functions into authentication buckets. Embodiments determine, for each of a plurality of mobile banking functions, a corresponding authentication buckets, where each authentication bucket corresponds with a level of authentication. Some embodiments receive a request, from a user, to access a function; access the plurality of authentication buckets to determine which of the authentication buckets corresponds with the requested function; determine the level of authentication associated with the determined authentication bucket; determine which authentication types are associated with the level of authentication; request authentication credentials corresponding to the authentication types; receive authentication credentials from the user; validate the authentication credentials, thereby resulting in a successful validation of the authentication credentials; and, in response to the successful validation of the authentication credentials, enable access to the function requested by the user.

    摘要翻译: 实施例涉及用于将移动银行功能分类到认证桶中的系统,方法和计算机程序产品。 对于多个移动银行业务中的每一个,实施例确定相应的验证桶,其中每个验证桶与认证级别相对应。 一些实施例从用户接收到访问功能的请求; 访问所述多个认证桶以确定所述认证桶中的哪一个对应于所请求的功能; 确定与确定的认证桶相关联的认证级别; 确定哪些认证类型与认证级别相关联; 请求与认证类型相对应的认证凭证; 从用户接收认证凭证; 验证身份验证凭证,从而导致验证凭证成功验证; 并且响应于认证证书的成功验证,使得能够访问由用户请求的功能。

    Remote revocation of application access based on non-co-location of a transaction vehicle and a mobile device
    4.
    发明授权
    Remote revocation of application access based on non-co-location of a transaction vehicle and a mobile device 有权
    基于交易车辆和移动设备的非共同位置远程撤销应用程序访问

    公开(公告)号:US09213974B2

    公开(公告)日:2015-12-15

    申请号:US14175786

    申请日:2014-02-07

    IPC分类号: G06Q20/40 G06Q20/32 G06Q20/34

    摘要: Embodiments of the invention relate to an invention for accessing a remotely located mobile device of a user based on certain events. The system, method, and computer program product are configured to: (a) monitor one or more transaction involving a transaction vehicle of a user; (b) determine a physical location of a transaction vehicle based at least partially on the one or more transactions; (c) determine a geographic location of a mobile device of the user, wherein the mobile device is associated with the transaction vehicle; (d) determine whether or not the transaction vehicle of the user and the mobile device of the user are co-located; and (e) reconfigure one or more applications accessible to the mobile device or one or more functional features of the mobile device based at least partially on determining that the mobile device and the transaction vehicle of the user are not co-located.

    摘要翻译: 本发明的实施例涉及一种用于基于某些事件访问用户的远程定位的移动设备的发明。 系统,方法和计算机程序产品被配置为:(a)监视涉及用户的交易车辆的一个或多个交易; (b)至少部分地基于所述一个或多个交易确定交易车辆的物理位置; (c)确定所述用户的移动设备的地理位置,其中所述移动设备与所述交易车辆相关联; (d)确定用户的交易车辆和用户的移动设备是否位于同一地点; 并且(e)至少部分地基于确定所述移动设备和所述用户的交易车辆不是共同位置来重新配置所述移动设备可访问的一个或多个应用或所述移动设备的一个或多个功能特征。

    Sorting mobile banking functions into authentication buckets
    5.
    发明授权
    Sorting mobile banking functions into authentication buckets 有权
    将移动银行功能分为认证桶

    公开(公告)号:US09595025B2

    公开(公告)日:2017-03-14

    申请号:US15016138

    申请日:2016-02-04

    摘要: Embodiments are directed to systems, methods and computer program products for sorting mobile banking functions into authentication buckets. Embodiments determine, for each of a plurality of mobile banking functions, a corresponding authentication buckets, where each authentication bucket corresponds with a level of authentication. Some embodiments receive a request, from a user, to access a function; access the plurality of authentication buckets to determine which of the authentication buckets corresponds with the requested function; determine the level of authentication associated with the determined authentication bucket; determine which authentication types are associated with the level of authentication; request authentication credentials corresponding to the authentication types; receive authentication credentials from the user; validate the authentication credentials, thereby resulting in a successful validation of the authentication credentials; and, in response to the successful validation of the authentication credentials, enable access to the function requested by the user.

    摘要翻译: 实施例涉及用于将移动银行功能分类到认证桶中的系统,方法和计算机程序产品。 对于多个移动银行业务中的每一个,实施例确定相应的验证桶,其中每个验证桶与认证级别相对应。 一些实施例从用户接收到访问功能的请求; 访问所述多个认证桶以确定所述认证桶中的哪一个对应于所请求的功能; 确定与确定的认证桶相关联的认证级别; 确定哪些认证类型与认证级别相关联; 请求与认证类型相对应的认证凭证; 从用户接收认证凭证; 验证身份验证凭证,从而导致验证凭证成功验证; 并且响应于认证证书的成功验证,使得能够访问由用户请求的功能。

    Providing authentication using previously-validated authentication credentials

    公开(公告)号:US09398000B2

    公开(公告)日:2016-07-19

    申请号:US15047565

    申请日:2016-02-18

    摘要: Embodiments of the invention are directed to systems, methods and computer program products for providing authentication using previously-validated authentication credentials. An exemplary apparatus is configured to receive a request to access a framework application, request, from a user, one or more authentication credentials corresponding to a primary level of user authentication, receive and validate the one or more authentication credentials, create, using the framework application, an authentication token based at least partially on the validation of the primary level of user authentication, wherein the authentication token is accessible by a plurality of applications, receive a request, from the user, to access one or more non-framework applications; and authenticate the one or more non-framework applications, where authenticating the non-framework applications requires accessing the authentication token created by the framework application such that the authentication is at least partially based on the primary level of user authentication.

    Shutting down access to all user accounts
    10.
    发明授权
    Shutting down access to all user accounts 有权
    关闭对所有用户帐户的访问

    公开(公告)号:US09413747B2

    公开(公告)日:2016-08-09

    申请号:US15047269

    申请日:2016-02-18

    IPC分类号: H04L29/06 G06Q40/02

    摘要: Disclosed is a system and associated method or restricting access to a user's account via one or more account access channels. The system typically includes a processor, a memory, and an access restriction module stored in the memory. The module is typically configured for: integrating one or more account access channels associated with the user's account with an access restriction procedure; receiving a request from the user to implement the access restriction procedure; based on receiving the request from the user to implement the access restriction procedure, implementing the access restriction procedure, wherein implementing the access restriction procedure comprises restricting access to the user's account via the account access channel(s).

    摘要翻译: 公开了一种系统和相关联的方法或者通过一个或多个帐户访问信道来限制对用户帐户的访问。 系统通常包括存储在存储器中的处理器,存储器和访问限制模块。 该模块通常被配置为:将与用户帐户相关联的一个或多个帐户访问通道与访问限​​制过程集成; 接收来自用户的请求以实现访问限制过程; 基于接收到来自用户实施访问限制过程的请求,实现访问限制过程,其中实现访问限制过程包括通过帐户访问频道限制对用户帐户的访问。