The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Dec. 10, 2019

Filed:

Oct. 19, 2017
Applicant:

T-mobile Usa, Inc., Bellevue, WA (US);

Inventors:

Michael Engan, Bellevue, WA (US);

Douglas McDorman, Sammamish, WA (US);

Senthil Kumar Mulluppadi Velusamy, Redmond, WA (US);

Komethagan Subramaniam, Redmond, WA (US);

Assignee:

T-Mobile USA, Inc., Bellevue, WA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 9/32 (2006.01); H04W 12/06 (2009.01); H04W 12/00 (2009.01);
U.S. Cl.
CPC ...
H04L 63/0807 (2013.01); H04L 9/3247 (2013.01); H04L 63/0272 (2013.01); H04L 63/0435 (2013.01); H04L 63/0442 (2013.01); H04L 63/061 (2013.01); H04L 63/0815 (2013.01); H04W 12/0609 (2019.01); H04L 63/10 (2013.01); H04L 63/166 (2013.01); H04W 12/001 (2019.01);
Abstract

Techniques are described for using two tokens to request access to a secure server. The tokens allow the server to verify, without an external call, that the requesting device is one identified in the request and that the requesting device is authorized by a trusted identity provider. A first token is an authentication token issued by the trusted identity provider and including a client device public key. The second token is a proof-of-possession token that is signed by a client device using a client device private key corresponding to the client device public key. The server obtains the client device public key from the authentication token, and then uses the client device public key to validate the proof-of-possession token. The authentication token can be re-used by a server creating its own proof-of-possession token for presentation to a second server to access a secure service on the second server.


Find Patent Forward Citations

Loading…