IPC분류정보
국가/구분 |
United States(US) Patent
등록
|
국제특허분류(IPC7판) |
|
출원번호 |
US-0738456
(2013-01-10)
|
등록번호 |
US-8812864
(2014-08-19)
|
발명자
/ 주소 |
- Adams, Neil Patrick
- Sibley, Richard Paul
- Davis, Dinah Lea Marie
- Singh, Ravi
|
출원인 / 주소 |
|
대리인 / 주소 |
|
인용정보 |
피인용 횟수 :
1 인용 특허 :
7 |
초록
▼
A reader element is associated with an identity verification element. The reader element has a biometric input device and is configured, through enrollment of a biometric element is used to encrypt a character sequence associated with the identity verification element. In a verification phase subseq
A reader element is associated with an identity verification element. The reader element has a biometric input device and is configured, through enrollment of a biometric element is used to encrypt a character sequence associated with the identity verification element. In a verification phase subsequent to the enrollment, a user may be spared a step of providing the character sequence by, instead, providing the biometric element. Responsive to receiving the biometric element, the reader element may decrypt the character sequence and provide the character sequence to the identity verification element.
대표청구항
▼
1. A method of handling a factor of a multi-factor authentication sequence, said method comprising: at an enrollment phase: receiving a first biometric candidate at a device associated with an identity verification element;responsive to said receiving said first biometric candidate, generating a fir
1. A method of handling a factor of a multi-factor authentication sequence, said method comprising: at an enrollment phase: receiving a first biometric candidate at a device associated with an identity verification element;responsive to said receiving said first biometric candidate, generating a first cryptographic key from said first biometric candidate;receiving a character sequence associated with said identity verification element;employing said first cryptographic key to encrypt said character sequence to result in an encrypted character sequence;storing said encrypted character sequence;at a verification phase that occurs at a different time than the enrollment phase: receiving a second biometric candidate at said device, said device lacking access to a biometric template for use in verifying said second biometric candidate;responsive to said receiving said second biometric candidate, generating a second cryptographic key from said second biometric candidate;decrypting said encrypted character sequence associated with said identity verification element, wherein said decrypting employs said second cryptographic key and results in a decrypted character sequence;responsive to determining the decryption of the encrypted character sequence was successful at said device: transmitting said decrypted character sequence to said identity verification element, andreceiving, from said identity verification element, an indication of failed character sequence verification;determining, from said indication, that said identity verification element has failed to verify said decrypted character sequence; andresponsive to said determining from said indication that said identity verification element has failed to verify said decrypted character sequence, providing an indication of failure to verify; wherein not one of the first or second biometric candidate is persistently stored. 2. The method of claim 1 wherein said first biometric candidate comprises a candidate fingerprint. 3. The method of claim 1 wherein said identity verification element comprises a smart card. 4. The method of claim 3 wherein said encrypted character sequence comprises a personal identification number associated with said smart card. 5. The method of claim 1 wherein said providing said indication of failure to verify comprises communicating an indication of authentication failure to an associated device. 6. The method of claim 1 wherein said providing said indication of failure to verify comprises providing an indication of authentication failure directly on a display module. 7. A smart card reader comprising: a storage component interface for receiving a smart card for communication therewith;a memory for storing, in an encrypted manner, a character sequence associated with said smart card, said memory lacking access to a biometric template during a verification phase;a biometric input device; anda processor adapted to: at an enrollment phase: receive a first biometric candidate;generate, responsive to said receiving said first biometric candidate, a first cryptographic key from said first biometric candidate;receive said character sequence associated with said smart card;employ said first cryptographic key to encrypt said character sequence to result in an encrypted character sequence;store, in said memory, said encrypted character sequence;at said verification phase which occurs at a different time than the enrollment phase: receive a second biometric candidate from said biometric input device;generate, responsive to said receiving said second biometric candidate, a second cryptographic key from said second biometric candidate;decrypt said encrypted character sequence, wherein said decrypting employs said second cryptographic key and results in a decrypted character sequence;responsive to determining the decryption of the encrypted character sequence was successful at said smart card reader: transmit said decrypted character sequence to said smart card, andreceive, from said smart card, an indication of failed character sequence verification;determine, from said indication, that said smart card has failed to verify said decrypted character sequence; andresponsive to said determining from said indication that said smart card has failed to verify said decrypted character sequence, provide an indication of failure to verify; wherein not one of the first or second biometric candidate is persistently stored. 8. The smart card reader of claim 7 wherein said first biometric candidate comprises a candidate fingerprint. 9. The smart card reader of claim 7 wherein said encrypted character sequence comprises a personal identification number associated with said smart card. 10. The smart card reader of claim 7 wherein, to provide said indication of failure to verify, said processor is further adapted to communicate an indication of authentication failure to an associated device. 11. The smart card reader of claim 7 further comprising a display module and wherein, to provide said indication of failure to verify, said processor is further adapted to provide an indication of authentication failure directly on the display module. 12. A non-transitory computer readable medium containing computer-executable instructions that, when performed by a processor at a device associated with an identity verification element, cause said processor to: at an enrollment phase: receive a first biometric candidate;generate, responsive to said receiving said first biometric candidate, a first cryptographic key from said first biometric candidate;receive a character sequence associated with said identity verification element;employ said first cryptographic key to encrypt said character sequence to result in an encrypted character sequence;store, in memory, said encrypted character sequence;at a verification phase that occurs at a different time than the enrollment phase: receive a second biometric candidate at said device associated with said identity verification element, said device lacking access to a biometric template;generate, responsive to said receiving said second biometric candidate, a second cryptographic key from said second biometric candidate;decrypt said encrypted character sequence associated with said identity verification element, wherein said decrypting employs said second cryptographic key and results in a decrypted character sequence;responsive to determining the decryption of the encrypted character sequence was successful at said device: transmit said decrypted character sequence to said identity verification element, andreceive, from said identity verification element, an indication of failed character sequence verification;determine, from said indication, that said identity verification element has failed to verify said decrypted character sequence; andresponsive to said determining from said indication that said identity verification element has failed to verify said decrypted character sequence, provide an indication of failure to verify; wherein not one of the first or second biometric candidate is persistently stored. 13. The non-transitory computer readable medium of claim 12 wherein said first biometric candidate comprises a candidate fingerprint. 14. The non-transitory computer readable medium of claim 12 said identity verification element comprises a smart card. 15. The non-transitory computer readable medium of claim 14 wherein said encrypted character sequence comprises a personal identification number associated with said smart card. 16. The non-transitory computer readable medium of claim 12 wherein, to provide said indication of failure to verify, said instructions further cause said processor to communicate an indication of authentication failure to an associated device. 17. The non-transitory computer readable medium of claim 12 wherein, to provide said indication of failure to verify, said instructions further cause said processor to providing an indication of authentication failure directly on the display module.
※ AI-Helper는 부적절한 답변을 할 수 있습니다.