Remote authentication and passwordless password reset

    公开(公告)号:US11962574B2

    公开(公告)日:2024-04-16

    申请号:US16586674

    申请日:2019-09-27

    申请人: MCAFEE, LLC

    IPC分类号: H04L9/00 H04L9/08 H04L9/40

    摘要: Examples are disclosed herein to implement remote authentication and passwordless password reset. An example server includes: at least one processor to forward executable instructions to a client device, the executable instructions, when executed at the client device, to cause the client device to: authenticate a user of an account based on a biometric authentication factor; obtain a local storage key by decrypting an encrypted local storage key with a cloud key obtained from a remote authentication server, the cloud key associated with the client device; decrypt a key bag with the local storage key, the key bag including a content encryption key and an encrypted credential encrypted with the content encryption key, the encrypted credential associated with the user; and decrypt the encrypted credential with the content encryption key to obtain a credential without the user supplying a master password associated with the account.

    REMOTE AUTHENTICATION AND PASSWORDLESS PASSWORD RESET

    公开(公告)号:US20200028832A1

    公开(公告)日:2020-01-23

    申请号:US16586674

    申请日:2019-09-27

    申请人: MCAFEE, LLC

    IPC分类号: H04L29/06 H04L9/08

    摘要: Examples are disclosed herein to implement remote authentication and passwordless password reset. An example server includes: at least one processor to forward executable instructions to a client device, the executable instructions, when executed at the client device, to cause the client device to: authenticate a user of an account based on a biometric authentication factor; obtain a local storage key by decrypting an encrypted local storage key with a cloud key obtained from a remote authentication server, the cloud key associated with the client device; decrypt a key bag with the local storage key, the key bag including a content encryption key and an encrypted credential encrypted with the content encryption key, the encrypted credential associated with the user; and decrypt the encrypted credential with the content encryption key to obtain a credential without the user supplying a master password associated with the account.