EP2973188A1

Secondary device as key for authorizing access to resources

Abstract

This record has no abstract on file.

Term

7.5 yearsto projected expiry

Projected expiry 13 March 2034, counted from filing; an application has no term until it is granted.

  1. Priority
  2. Filed
  3. Published
  4. Today
  5. Projected expiry

15 claims: 4 independent, 11 dependent

  1. 1
    Claims of equivalent WO 2014151235 A1 CLAIMS 1. A method of accessing a resource (139), the method being performed by a client side application (123) executed on a client device (106), the method comprising:transmitting a request to an authorization service (136) executing on a network server (103) for access to a resource (139);receiving from the authorization service (136) an indication that the client device (106) must comply with a distribution rule (145) associated with the resource (139), wherein the distribution rule (145) requires a specified secondary client device (108) to be in communication with the client device (106) as a prerequisite to accessing the resource (139);determining that the client device (106) complies with the distribution rule (145);and in response to determining that the client device (106) complies with the distribution rule (145), accessing the resource (139).
  2. 6
    A client device (106), comprising:a network connectivity interface for enabling communication via a network (109) between the client device (106) and an authorization service (136) executing on a network server (103);a memory for storing a client side application (123);and a processor communicatively coupled to the memory for executing said client side application (123), wherein said client side application (123) comprises executable instructions for: transmitting to the authorization service (136), via the network connectivity interface, a request for access to a resource (139), receiving from the authorization service (136), via the network connectivity interface, an indication that the client device (106) must comply with a distribution rule (145) associated with the resource (139), wherein the distribution rule (145) requires a secondary client device (108) to be in communication with the client device (106) as a prerequisite to accessing the resource (139), receiving a secure copy of the resource (139) and storing it in the memory, determining that the client device (106) complies with the distribution rule (145), and communicating with the secondary client device (108), via the network connectivity interface, to gain access to the secure copy of the resource (139).
  3. 11
    A network server (103), comprising:a network connectivity interface for enabling communication via a network (109) between the network server (103) and a client side application (123) executed by a client device (106);a memory for storing a secure copy of a resource (139), an authorization service (136), and at least one distribution rule (145);a processor communicatively coupled to the memory for executing said authorization service (136), wherein said authorization service (136) comprises executable instructions for: receiving from the client side application (123), via the network connectivity interface, a request for access to the resource (139), determining that the distribution rule (145) is associated with the resource (139), wherein the distribution rule (145) requires a secondary client device (108) to be in communication with the client device (106) as a prerequisite to the client side application (123) accessing the resource (139(, transmitting to the client side application (123), via the network connectivity interface, an indication of the distribution rule (145) and the secure copy of the resource (139), receiving from the secondary client device (108), via the network connectivity interface, a request for an authorization credential required for accessing the secure copy of the resource (139), and in response to receiving the request, transmitting the authorization credential to the secondary client device (108) via the network connectivity interface.
  4. 15
    The network server of any of claims 11 to 14, wherein the authorization credential comprises a decryption key to decrypt the secure copy of the resource (139).