Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

39 results about "Web authentication" patented technology

Web service authentication is the verification of a user’s identity before allowing access to a network or website. Certificates verify the identity of a Web server to users.

Network authentication and authorization issue detection

PendingUS20260122068A1Securing communicationWeb authenticationStation
Techniques are disclosed that enable a system to determine whether an error associated with a cloud-based authentication, authorization, and accounting (AAA) service has occurred. The techniques include obtaining, for a plurality of network access service (NAS) devices at a site, data indicative of authentication attempts for client devices with a cloud-based AAA service. The techniques include identifying, based on the data, whether one or more errors occurred for the authentication attempts; and correlating the one or more errors across the plurality of NAS devices at the site to determine whether the one or more errors are indicative of an issue associated with the AAA service. The techniques further include determining at least one remediation action for the issue associated with the AAA service.
Owner:JUNIPER NETWORKS INC

Methods and apparatus for storing and forwarding authentication of user equipment registration

PendingCN122139454ANetwork topologiesSecurity arrangementWeb authenticationStore and forward
Techniques for authenticating user equipment (UE) to a network are provided. For example, a method performed by a non-terrestrial node in a network includes: receiving a registration request from the UE for authenticating to the network; in response to the unavailability of a link between the non-terrestrial node and a terrestrial node of the network for forwarding the registration request; storing the registration request and assigning binding information associated with the non-terrestrial node to the UE; and sending a message to the UE including the binding information to be used by the UE.
Owner:NOKIA TECHNOLOGIES OY

Systems and methods for orchestrating web authentication requests

ActiveUS12556526B2Securing communicationWeb authenticationWeb browser
In one embodiment, a method uses a web browser to receive an authentication request for an application from an authentication prompt of a client device. The method identifies an authentication protocol associated with web browser of the client device and use the authentication prompt to fetch a first challenge from an authentication service associated with the client device. The method uses the authentication prompt to communicate a subscribe to the authentication service and use a localhost to communicate to the application to provide the first challenge. In response to receiving the first challenge, the method uses one or more native Application Programming Interfaces (APIs) to determine an assertion associated with the authentication request and the authentication protocol. The method validates the assertion associated with the authentication request. In response to determining the assertion is valid, the method approves the authentication request.
Owner:CISCO TECHNOLOGY INC

4G Cat.1 passive Internet of Things monitoring system and method based on Vsim

PendingCN121547835APower managementSecurity arrangementPassive infrared sensorWeb authentication
The invention relates to the technical field of Internet of Things monitoring, in particular to a 4G Cat.1 passive Internet of Things monitoring system and method based on Vsim. The method comprises the following steps: pre-storing network authentication information of at least two operators through a VSim software unit; establishing low-power-consumption network connection between the 4G Cat.1 communication unit and a preset cloud management platform according to the network authentication information in a terminal dormant state; the method comprises the following steps: continuously monitoring heat radiation change in a target monitoring area through a passive infrared sensor, and when an effective moving event is detected, generating a hardware interruption wake-up signal; and waking up the terminal according to the hardware interrupt wakeup signal, and obtaining compressed audio and video data of the target monitoring area through the terminal. According to the method, millisecond-level wakeup and optimal link maintenance under permanent endurance of the passive camera are realized through a VSim multi-operator dynamic switching and electric quantity self-adaption strategy.
Owner:SHENZHEN YIYI IOT CO LTD

SRv6-based network cloud authentication method, storage medium and device

PendingCN121485989ASecuring communicationAccess networkWeb authentication
The invention belongs to the technical field of network cloud authentication, and relates to an SRv6-based network cloud authentication method, storage medium and device, and the method comprises the steps that a network client sends an SRv6-based network authentication request message to a network management cloud through a basic network; after receiving the SRv6-based network authentication request message, the network management cloud replies an SRv6 path packet to the network client initiating the request message; after receiving the SRv6 path packet, the network client processes the identity authentication information and sends the processed identity authentication information to the network service cloud; the network service cloud authenticates the identity authentication information, if the authentication succeeds, the network client accesses the network service cloud, and if the authentication fails, the network client does not access the network service cloud; according to the method provided by the invention, the identity authentication information of the network client is divided into a plurality of parts and is sent to the network service cloud through a plurality of paths, so that the sub-identity authentication information is forwarded according to different paths, and line repetition is effectively avoided.
Owner:SOUTHWEST UNIV

A chain-based BFT consensus method for unmanned aerial vehicle ad hoc network

ActiveCN120050648BWeb authenticationInformation transmission
The present application relates to the technical field of unmanned aerial vehicle swarm technology and blockchain technology, and particularly relates to a chain BFT consensus method for unmanned aerial vehicle ad hoc network. The present application selects a plurality of unmanned aerial vehicles for network authentication, constructs an unmanned aerial vehicle ad hoc network, constructs an ad hoc network topology structure, selects consensus nodes based on flight requirements, constructs a consensus network topology structure, assembles a consensus network based on a chain BFT protocol, divides the consensus nodes into a plurality of chain nodes and a plurality of backup chain nodes, optimizes the consensus network using a PSO algorithm to determine the chain sequence of each chain node in the consensus network, transmits information according to the chain sequence, and updates the topology structure in the consensus network based on a sudden situation to redetermine the chain sequence of each chain node. The present application guarantees the timing of information transmission, effectively determines the optimal chain sequence quickly and accurately, effectively guarantees the data transmission efficiency, effectively reduces the communication complexity, and effectively improves the consensus efficiency of the unmanned aerial vehicle group in the consensus network.
Owner:BEIHANG UNIV

Behavior of user equipment when emergency bearer service connection fails due to network authentication failure

PendingCN122003890AService provisioningWeb authenticationUser equipment
In one aspect of the disclosure, a method, a computer readable medium, and an apparatus are provided. The device may be a user equipment (UE). A user equipment receives an AUHENTICATION REJECT message from a network during an attempt to establish an emergency service through a first procedure. The user equipment performs a generic operation of authentication rejection. And the user equipment informs the upper layer of failure of the first process. Alternatively, the user equipment attempts to perform a second process.
Owner:MEDIATEK SINGAPORE PTE LTD

Network authentication method, device, system, electronic device and storage medium

PendingCN122317615AWeb authenticationEngineering
This disclosure provides a network authentication method, apparatus, system, electronic device, and storage medium. The main technical features include: generating a set of authentication vectors based on a root key; sending the set of authentication vectors to an on-board network device, so that the on-board network device can perform authentication interaction with the user terminal when receiving an authentication request from the user terminal. By pre-generating and sending a set of authentication vectors to the on-board network device, the on-board network device can complete the authentication interaction based on the set of authentication vectors, reducing the reliance of the authentication process on real-time satellite-to-ground communication, effectively avoiding the impact of power supply link interruptions or delays on the authentication process, and ensuring the smooth progress of user terminal authentication.
Owner:CHINA MOBILE COMM LTD RES INST +1

Policy based multi-link operation access for devices

PCT designated stageWO2026030063A1Assess restrictionNetwork topologiesComputer networkWeb authentication
Methods to restrict the number of multi-link operation (MLO) links while Layer 3 (web) authentication is in progress and permit additional links only after the web authentication is completed. The methods involve obtaining an MLO policy for establishing a multi-link connection to a wireless network and performing an MLO association for establishing the multi-link connection to the wireless network based on the MLO policy in which the MLO association is restricted to a single link during a web authentication for access to the wireless network.
Owner:CISCO TECHNOLOGY INC

Iot security authentication method based on communication network

This invention relates to the field of IoT security authentication technology, specifically to an IoT security authentication method based on a communication network. The method includes: when an IoT device connects to the network, it collects its own multi-dimensional physical fingerprint information, including the device's hardware signature, firmware version hash value, and current operating environment signal feature profile. This information is then encapsulated as a component of an identity credential and combined with a dynamic temporary identifier to construct an initial authentication request message, which is then sent. The network authentication entity parses the message, queries the device's legitimate fingerprint feature database based on the dynamic temporary identifier to obtain a registered physical fingerprint template, and calculates a comprehensive similarity by performing multi-level matching between the real-time fingerprint and the template. When the similarity exceeds a threshold, a session key seed with a time-limited window is generated, deriving a pair of temporary communication keys. This method improves the authenticity and security of IoT device access authentication through multi-dimensional physical fingerprint fusion and dynamic key derivation.
Owner:CHINA TELECOM CONSTR 4TH ENG

Network-based authentication in an ambient internet of things architecture

PendingUS20260129436A1Security arrangementWeb authenticationEngineering
Various aspects of the present disclosure generally relate to wireless communication. In some aspects, an ambient Internet of Things (AIoT) device may perform an authentication and key agreement procedure with a network function to generate a root key. The AIoT device may receive, from an AIoT controller, a key confirmation message. The AIoT device may generate, using the key confirmation message and the root key, a protection key. The AIoT device may transmit, to the AIoT controller, a key confirmation acknowledgement using the protection key and in response to the key confirmation message. Numerous other aspects are described.
Owner:QUALCOMM INC

Apparatus, system, and method of federated authentication service (FAS) for wireless communication roaming

PendingUS20260101185A1Security arrangementWeb authenticationEngineering
For example, a Federated Authentication Service (FAS) server may be configured to register the FAS server with a wireless communication roaming federation service; to authenticate a user of a mobile device according to a network authentication protocol of the wireless communication roaming federation service, e.g., over a Remote Authentication Dial-In User Service (RADIUS) over Transport Layer Security (RADSec) tunnel between the FAS server and an Access Network Provider (ANP); to identify an Identity Provider (IDP) for the user based on user information for the user received from the ANP via the RADSec tunnel; to trigger user authentication of the user with the IDP for the user via an authentication interface between the FAS server and the IDP for the user; and based on a determination that the user is successfully authenticated with the IDP for the user, to send an authentication success message to the ANP via the RADSec tunnel.
Owner:INTEL CORP

Network authentication using UE SIM verification

PendingUS20260046617A1Digital data authenticationTransmissionWeb siteWeb authentication
Network authentication, that is more resistant to cyberattacks, uses verification of subscriber identity modules (SIMs) in user equipment (UEs) such as cellphones. A person visits a website with a computer, or calls customer service, to access their user account and their UE receives an interaction identifier (ID) that includes a session ID, an identifier of the customer ID or their UE, and a time indicator. This may be in the form of a QR code displayed on the computer screen or a text message from customer service. The UE forwards the interaction ID to a verification website, providing the IP address or ID stored in the SIM. The verification website compares the UE-provided information with what has been stored earlier by the UE's home wireless carrier to verify the SIM in the UE, providing a proxy for verifying the identity of the person.
Owner:T MOBILE US INC

Network authentication method and device, terminal and network-side equipment

ActiveCN116347432BSecurity arrangementWeb authenticationAttack
The application provides a network authentication method, device, terminal and network side equipment. The method comprises the following steps: receiving a first authentication parameter sent by the network side equipment; generating an authentication response message and a root key of a current session according to the first authentication parameter; in the case that the authentication response message indicates that the network authentication fails, performing encryption processing on the authentication response message by using an encryption key and an integrity key, wherein the authentication response message comprises an error type corresponding to the network authentication failure; the encryption key and the integrity key are obtained according to the root key of the current session; and sending the authentication response message after the encryption processing to the network side equipment. In the embodiment of the application, the terminal derives the encryption key and the integrity key by using the root key of the current session known by the network side equipment, and performs encryption on the authentication response message by using a symmetric encryption algorithm, so that the attack of an attacker can be avoided.
Owner:CHINA MOBILE COMM LTD RES INST +1

Network apparatus and network authentication method thereof

ActiveUS12627662B2Securing communicationData packWeb authentication
A network apparatus and a network authentication method thereof are provided. The network apparatus serving as a server end includes a network interface device and a processor. The network interface device is configured to connect to a network. The processor is coupled to the network interface device, and configured to receive a network packet send by a client end through the network, acquire a verification data commonly agreed with the client end, and establish a network connection with the client end in response to a verification data recorded in the network packet matching the acquired verification data.
Owner:MOXA INC

Information access handover

A computerized method of information access handover between a first device and a second device of a user is presented. The method comprises displaying, on the first device, a QR code generated by a synchronizer. The method further comprises capturing the QR code with the second device for displaying the data record and providing a registration option for associating the data record with the user at a relying party. The method further comprises performing a web authentication registration and, in response to that the web authentication registration flow has been performed successfully, performing an information access handover and securing process. The information access handover and securing process comprises sharing, by the second device, the unique user identifier and the device identifier with the first device, storing them at the first device, and securing access to the data record. A corresponding system and computer program are provided, too.
Owner:AMADEUS SAS

Network access authentication method and system, remote interaction system, VPN

ActiveCN115883117BSecuring communicationAccess networkWeb authentication
Network access authentication method and system, remote interaction system, VPN. Embodiments of the present application disclose a remote interaction system of a medical imaging system, a network access authentication system and method, a computer readable storage medium, and a VPN. The medical imaging system comprises a medical imaging device and a computer device for controlling the medical imaging device, the computer device being connected to a local network to be accessed. The network authentication system comprises an authentication module and a resource scheduling module. The authentication module is configured to receive an authorized connection request from an authorized end, send the authorized connection request to a remote end, and receive a response message from the remote end. The resource scheduling module is configured to receive the authorized connection request sent by the authentication module, and allocate a virtual network server and generate a security rule based on the authorized connection request. The remote interaction system comprises the network authentication system and the virtual network server allocated by the resource scheduling module.
Owner:GE PRECISION HEALTHCARE LLC

Heterogeneous terminal network authentication method and system

PendingCN121664559ASecuring communicationHigh level techniquesWeb authenticationEnd system
The invention provides a heterogeneous terminal network authentication method and system, relates to the technical field of data communication, is applied to a cross-platform unified authentication client, and comprises the following steps: responding to an event that a user logs in a terminal system, obtaining an identity label of a current login user from the event, determining a user certificate corresponding to the identity label based on the identity label, and sending the user certificate to a server; performing certificate validity verification on the user certificate to obtain a certificate verification result, if the certificate verification result is a valid result, performing parameter configuration on a network interface of the terminal system, initiating 802.1 X authentication on the user certificate to an authentication server through the configured network interface to obtain a communication authentication result, and if the communication authentication result is passed, performing authentication on the user certificate to obtain a communication authentication result; the network authentication method and device solve the problems that network authentication in the existing heterogeneous terminal environment is troublesome in operation and poor in user experience, and have the effect of improving the operation convenience of network authentication in the heterogeneous terminal environment.
Owner:SHANGHAI NINGTON INFORMATION TECH CO LTD

Automated silent network authentication protocol security, verification, and access control for cellular handheld devices

PCT designated stageWO2026072535A1Substation equipmentSecurity arrangementWeb authenticationEngineering
Systems and methods are described for receiving a request to provide content to at least one authorized recipient; generating a customized message comprising at least one action associated with the content; causing transmission of the customized message to a mobile computing device associated with the at least one authorized recipient, requesting authorization data corresponding to the at least one authorized recipient; responsive to receiving the requested authorization data: verifying that the authorization data correlates to an identity of the at least one authorized recipient or an identity of the mobile computing device; determining a classification of the at least one authorized recipient; and generating a Rich Communication Service (RCS) message comprising the content; and scheduling, using a machine learning model and based on the determined classification, delivery of the RCS message to the mobile computing device.
Owner:IQX CORP

Method for selecting security algorithm in authentication procedure of wireless communication network

PendingEP4649704A4Security arrangementNetwork data managementWeb authenticationEngineering
The disclosure relates to a fifth generation (5G) or sixth generation (6G) communication system for supporting a higher data transmission rate. A method performed by a user equipment (UE) for performing network authentication is provided. The method includes determining, by the UE, a K-bit identification indicator indicating whether a length of an authentication key (K) stored in a subscriber identification module (SIM) is identified, selecting, by the UE, at least one security algorithm based on the K-bit identification indicator, and transmitting, by the UE to a network device, a registration request message including the K-bit identification indicator and information about the at least one security algorithm.
Owner:SAMSUNG ELECTRONICS CO LTD

Wireless communication network authentication for a wireless user device that has a circuitry identifier

A wireless communication network authenticates a wireless user device. Access circuitry decrypts access data with a network key and identifies a network ID and circuitry ID in the decrypted access data. In response, the access circuitry establishes a secure tunnel with the user device and transfers the circuitry ID to authentication circuitry. The authentication circuitry identifies a user ID based on the circuitry ID and authenticates the user device based on the user ID. The authentication circuitry generates a new network key pair and transfers the new keys and a grant to the access circuitry. The access circuitry transfers a new network key and the grant to the user device over the secure tunnel. The user device unlocks a user key with the grant and securely communicates using the user key. The wireless user device uses the new network key for the next authentication.
Owner:T MOBILE INNOVATIONS LLC

Short message authentication method and system for Wi-Fi access and storage medium

PendingCN121751165AAssess restrictionNetwork topologiesWeb authenticationInternet privacy
The invention relates to the technical field of network authentication, in particular to a short message authentication method and system for Wi-Fi access and a storage medium, and the method comprises the steps: capturing an MAC address of terminal equipment when the terminal equipment is detected to access Wi-Fi; inquiring whether a binding record of the MAC address exists in the storage address or not; if not, short message authentication is completed according to the mobile phone number, a binding record is generated and stored, and network access authority is granted; if yes, directly granting network access authority; and checking and deleting the overdue binding record in the storage address. It can be understood that according to the technical scheme, within the period of validity, the user only needs to execute authentication once, the disconnection and reconnection do not need short message authentication again, and convenience and rapidness are achieved; multiple times of short message interaction are not needed, authentication efficiency is high, and resource consumption is low.
Owner:BEIJING SHANGYUAN XINAN TECH CO LTD

Call processing method, related device, and communications system

A method includes: a network authentication server receiving a call request message from a calling device, where the call request message includes a first user identity of a calling user and a call authentication identifier; the network authentication server sending a call authentication request to an enterprise authentication server corresponding to the first user identity, where the call authentication request includes the call authentication identifier; the network authentication server receiving a call authentication success indication from the enterprise authentication server, where the call authentication success indication indicates that authentication succeeds; and the network authentication server sending target data to a called device, where the target data includes identity information of the calling user and / or information of an enterprise to which the calling user belongs.
Owner:HUAWEI TECH CO LTD

Network access method and device, electronic equipment, storage medium and program product

The invention provides a network access method and device, electronic equipment, a storage medium and a program product, and belongs to the technical field of network communication, the method comprises the following steps: receiving a user traffic data packet sent by a user terminal, and identifying a message bearing type of the user traffic data packet; searching a clustering broadband user account corresponding to the user terminal in a pre-stored user information record according to the message bearing type; if the searching is successful, allowing the user terminal to access the network; if the searching fails, authenticating the user terminal according to the message bearing type; and after the authentication is successful, establishing a mapping relationship between the feature information of the user terminal and the clustering broadband user account, storing the mapping relationship into a user information record, and allowing the user terminal to access the network. According to the application, the user information record is stored and maintained in advance, the clustering broadband user account is searched according to the message bearing type, and the user terminal is judged to pass the network authentication according to the search result, so that the capability of unified authentication of the clustering broadband optical fiber fixed network and the mobile network at the same time is realized.
Owner:CHINA MOBILEHANGZHOUINFORMATION TECH CO LTD +1

Methods, architectures, apparatuses and systems for network authentication with a legacy authentication authorization and accounting server for stand-alone non-public network

PendingUS20260181388A1Security arrangementWeb authenticationInternet privacy
A first network node of a first network, the first network node configured to receive, from a second network node, a first authentication request to access, by a wireless transmit / receive unit (WTRU), a second network hosted by the first network; send, to a third network node, a first request to obtain an identification token; receive, from the third network node, a response to the first request; send, to a fourth network node, a second authentication request comprising information indicating an identifier associated with the WTRU, a network identifier and the identification token; receive, from the fourth network node, a response to the second authentication request comprising information indicating a first key in response to an authentication success; determine, based on the first key and network identifier, a second key to access the second network by the WTRU; and send, to the second network node, information indicating the second key.
Owner:INTERDIGITAL PATENT HOLDINGS INC

Network authentication using UE SIM verification

PCT designated stageWO2026035366A1Digital data protectionDigital data authenticationWeb siteWeb authentication
Network authentication, that is more resistant to cyberattacks, uses verification of subscriber identity modules (SIMs) in user equipment (UEs) such as cellphones. A person visits a website with a computer, or calls customer service, to access their user account and their UE receives an interaction identifier (ID) that includes a session ID, an identifier of the customer ID or their UE, and a time indicator. This may be in the form of a QR code displayed on the computer screen or a text message from customer service. The UE forwards the interaction ID to a verification website, providing the IP address or ID stored in the SIM. The verification website compares the UE-provided information with what has been stored earlier by the UE's home wireless carrier to verify the SIM in the UE, providing a proxy for verifying the identity of the person.
Owner:T MOBILE US INC

Method, apparatus, storage medium and electronic device for network authentication

The present disclosure discloses methods, apparatuses, storage medium and electronic devices for network authentication. A first query request is sent to a background server through an authentication server, network permission information and a second user credential of a target user is sent by the background server to the authentication server in response to the first query request being received, and in the event that an authentication result obtained based on a first user credential and the second user credential characterizes that the authentication is passed, the authentication result and the network permission information are sent to a network device, causing the network device establish a communication connection between the network device and a terminal device. Thus, a network permission of the terminal device can be dynamically assigned based on a scenario in which the terminal device is located, and usage requirements of complex network authorization scenarios can be satisfied.
Owner:BEIJING VOLCANO ENGINE TECH CO LTD

Enterprise certificate delivery for private 5G network authentication

Presented herein are efficient techniques through which an enterprise certificate is obtained for a user device based on a Subscriber Identity Module (SIM)-based authentication of the user device. A request for a SIM-based authentication is received from a user device accessing a private cellular network. A certificate is obtained from an enterprise based on the SIM-based authentication of the user device. The certificate is stored at the user device and used for subsequent authentication of the user device when accessing the private cellular network.
Owner:CISCO TECHNOLOGY INC

Auto-form fill based website authentication

PendingUS20260081908A1Digital data authenticationSecurity arrangementWeb siteWeb authentication
A method for a website authentication is provided. The method includes receiving a reference uniform resource locator (URL) at a browser and determining whether the reference URL adheres to an authentication protocol including a credential identifier and a web authentication host URL. When the reference URL adheres to the authentication protocol, the method also includes extracting the credential identifier and the web authentication host URL from the reference URL. The method further includes obtaining credential data from a remote service using the credential identifier and sending web authentication instructions to the browser. The web authentication instructions include the web authentication host URL and the credential data.
Owner:GOOGLE LLC

Policy based multi-link operation access for devices

PendingUS20260040378A1Assess restrictionNetwork topologiesComputer networkWeb authentication
Methods to restrict the number of multi-link operation (MLO) links while Layer 3 (web) authentication is in progress and permit additional links only after the web authentication is completed. The methods involve obtaining an MLO policy for establishing a multi-link connection to a wireless network and performing an MLO association for establishing the multi-link connection to the wireless network based on the MLO policy in which the MLO association is restricted to a single link during a web authentication for access to the wireless network.
Owner:CISCO TECHNOLOGY INC