DETAILED ACTION
Notice of Pre-AIA or AIA Status
The present application, filed on or after March 16, 2013, is being examined under the first inventor to file provisions of the AIA .
Information Disclosure Statement
The Information Disclosure Statement(s) submitted by applicant on 6/28/2017 has/have been considered. The submission is in compliance with the provisions of 37 CFR § 1.97. Form PTO-1449 signed and attached hereto.
Double Patenting
1. The nonstatutory double patenting rejection is based on a judicially created doctrine grounded in public policy (a policy reflected in the statute) so as to prevent the unjustified or improper timewise extension of the “right to exclude” granted by a patent and to prevent possible harassment by multiple assignees. A nonstatutory double patenting rejection is appropriate where the claims at issue are not identical, but at least one examined application claim is not patentably distinct from the reference claim(s) because the examined application claim is either anticipated by, or would have been obvious over, the reference claim(s). See, e.g., In re Berg, 140 F.3d 1428, 46 USPQ2d 1226 (Fed. Cir. 1998); In re Goodman, 11 F.3d 1046, 29 USPQ2d 2010 (Fed. Cir. 1993); In re Longi, 759 F.2d 887, 225 USPQ 645 (Fed. Cir. 1985); In re Van Ornum, 686 F.2d 937, 214 USPQ 761 (CCPA 1982); In re Vogel, 422 F.2d 438, 164 USPQ 619 (CCPA 1970); and In re Thorington, 418 F.2d 528, 163 USPQ 644 (CCPA 1969).
A timely filed terminal disclaimer in compliance with 37 CFR 1.321(c) or 1.321(d) may be used to overcome an actual or provisional rejection based on a nonstatutory double patenting ground provided the reference application or patent either is shown to be commonly owned with this application, or claims an invention made as a result of activities undertaken within the scope of a joint research agreement. A terminal disclaimer must be signed in compliance with 37 CFR 1.321(b).
The USPTO internet Web site contains terminal disclaimer forms which may be used. Please visit http://www.uspto.gov/forms/. The filing date of the application will determine what form should be used. A web-based eTerminal Disclaimer may be filled out completely online using web-screens. An eTerminal Disclaimer that meets all requirements is auto-processed and approved immediately upon submission. For more information about eTerminal Disclaimers, refer to http://www.uspto.gov/patents/process/file/efs/guidance/eTD-info-I.jsp.
Claims 1-20 are rejected on the ground of nonstatutory double patenting as being unpatentable over claims 1-27 of U.S. Patent No. US 11,909,765.
Although the conflicting claims are not identical, they are not patentably distinct from each other because the subject matter claimed in the instant application is substantially similar in nature and anticipated by U.S. Patent No. US 11,909,765. See the table below:
Instant Application
U.S. Patent No. US 11,909,765.
1. A method for authenticating a user seeking access to a secure resource, the method comprising:
at a first time, allowing the user to access the secure resource on a first client node on the basis of a first authentication mode;
enrolling one or more wireless devices co-located with the user; and at a second time after the first time,
allowing the user to access the secure resource on a second client node on the basis of a second authentication mode,
wherein the second authentication mode comprises co-location of one or more enrolled wireless devices with the user.
2. The method of claim 1, wherein the first authentication mode comprises a biometric credential received from the user.
3. The method of claim 1, wherein the second authentication mode comprises co-location of a plurality of enrolled wireless devices with the user and the second client node.
4. The method of claim 1, wherein the second authentication mode comprises co-location of three or more enrolled wireless devices with the user and the second client node.
5. The method of claim 1, wherein the second authentication mode consists of co-location of a plurality of enrolled wireless devices with the user and the second client node.
6. The method of claim 1, wherein the second authentication mode comprises (i) co-location of one or more enrolled wireless devices with the user and the second client node and (ii) one or more of a password or confirmation of physical presence of the user via a perimeter entry monitor.
7. The method of claim 1, wherein enrolling one or more wireless devices comprises, for each said wireless device,
receiving one or more unique signatures of the wireless device from the user and storing the one or more unique signatures in an identity database.
8. The method of claim 1, wherein enrolling one or more wireless devices comprises, for each said wireless device,
(i) creating a signature for the wireless device, and (ii) storing the signature or a link thereto in an identity database.
9. The method of claim 8, wherein creating the signature for the wireless device comprises embedding a cryptographic token on the wireless device.
10. The method of claim 8, wherein the signature for the wireless device is generated on the basis of one or more unique properties of the wireless device.
11. The method of claim 10, wherein the one or more unique properties of the wireless device comprises at least one of a serial number or a phone number.
12. The method of claim 1, wherein enrolling one or more wireless devices comprises (i) electronically detecting the one or more wireless devices co-located with the user and the first client node and (ii) for each said wireless device not already enrolled, storing an identifier associated therewith in an identity database.
13. The method of claim 1, wherein enrolling one or more wireless devices comprises (i) electronically detecting the one or more wireless devices co-located with the user and the first client node and (ii) for each said wireless device not already enrolled, (a) prompting the user whether or not to enroll the wireless device and (b) for wireless devices to be enrolled, storing an identifier associated therewith in an identity database.
14. The method of claim 1, further comprising, after the user has accessed the secure resource on the first client node, (i) verifying the co-location, with the user and the first client node, of all wireless devices associated with the user in an identity database, and (ii) for any wireless device associated with the user but not co-located with the user and the first client node, at least one of (a) decrementing a counter associated with the wireless device or (b) disassociating the wireless device from the user in an identity database.
1. A method for authenticating a user seeking access to a secure resource, the method comprising:
at a first time, allowing the user to access the secure resource on a first client node on the basis of a first authentication mode in accordance with a security policy, wherein the first client node is not a wireless device of the user; after the user has accessed the secure resource, enrolling one or more wireless devices co-located with the user and the first client node by associating the one or more wireless devices with the user in an identity database; and at a second time after the first time,
allowing the user to access the secure resource on a second client node on the basis of a second authentication mode in accordance with the security policy without requiring the first authentication mode,
wherein the second authentication mode comprises co-location of one or more enrolled wireless devices with the user and the second client node.
2. The method of claim 1, wherein the first authentication mode comprises a biometric credential received from the user.
3. The method of claim 1, wherein the second authentication mode comprises co-location of a plurality of enrolled wireless devices with the user and the second client node.
4. The method of claim 1, wherein the second authentication mode comprises co-location of three or more enrolled wireless devices with the user and the second client node.
5. The method of claim 1, wherein the second authentication mode consists of co-location of a plurality of enrolled wireless devices with the user and the second client node.
6. The method of claim 1, wherein the second authentication mode comprises (i) co-location of one or more enrolled wireless devices with the user and the second client node and (ii) one or more of a password or confirmation of physical presence of the user via a perimeter entry monitor.
7. The method of claim 1, wherein enrolling one or more wireless devices comprises, for each said wireless device, receiving one or more unique signatures of the wireless device from the user and storing the one or more unique signatures in the identity database.
8. The method of claim 1, wherein enrolling one or more wireless devices comprises, for each said wireless device, (i) creating a signature for the wireless device, and (ii) storing the signature or a link thereto in the identity database.
9. The method of claim 8, wherein creating the signature for the wireless device comprises embedding a cryptographic token on the wireless device.
10. The method of claim 8, wherein the signature for the wireless device is generated on the basis of one or more unique properties of the wireless device.
11. The method of claim 10, wherein the one or more unique properties of the wireless device comprises at least one of a serial number or a phone number.
12. The method of claim 1, wherein enrolling one or more wireless devices comprises (i) electronically detecting the one or more wireless devices co-located with the user and the first client node and (ii) for each said wireless device not already enrolled, storing an identifier associated therewith in the identity database.
13. The method of claim 1, wherein enrolling one or more wireless devices comprises (i) electronically detecting the one or more wireless devices co-located with the user and the first client node and (ii) for each said wireless device not already enrolled, (a) prompting the user whether or not to enroll the wireless device and (b) for wireless devices to be enrolled, storing an identifier associated therewith in the identity database.
14. The method of claim 1, further comprising, after the user has accessed the secure resource on the first client node, (i) verifying the co-location, with the user and the first client node, of all wireless devices associated with the user in the identity database, and (ii) for any wireless device associated with the user but not co-located with the user and the first client node, at least one of (a) decrementing a counter associated with the wireless device or (b) disassociating the wireless device from the user in the identity database.
15. The method of claim 1, wherein the first authentication mode does not comprise co-location of one or more enrolled wireless devices with the user and the first client node.
16. The method of claim 1, wherein the second client node is not a wireless device of the user.
17. The method of claim 1, wherein the first authentication mode comprises receiving log-in credentials input by the user on the first client node.
18. The method of claim 1, wherein the second authentication mode further comprises receiving log-in credentials input by the user on the second client node.
Claims 1-20 are rejected on the ground of nonstatutory double patenting as being unpatentable over claims 1-34 of U.S. Patent No. US 10,333,980.
Although the conflicting claims are not identical, they are not patentably distinct from each other because the subject matter claimed in the instant application is substantially similar in nature and anticipated by U.S. Patent No. US 10,333,980.
Claims 1-20 are rejected on the ground of nonstatutory double patenting as being unpatentable over claims 1-20 of U.S. Patent No. US 12,323,467.
Although the conflicting claims are not identical, they are not patentably distinct from each other because the subject matter claimed in the instant application is substantially similar in nature and anticipated by U.S. Patent No. US 12,323,467.
This is a nonstatutory double patenting rejection.
Conclusion
The prior art made of record and not relied upon is considered pertinent to applicant's disclosure.
Sadler et al. (US 8893284 B2) discloses a method and system for extending an authentication of a wireless device are disclosed. For example, the method includes authenticating access to the wireless device via a first authentication. The method detects a bonded authentication device as a second authentication. The method permits access to the wireless device when the bonded authentication device is detected.
Louboutin et al.( US 8925069 B2) discloses authentication techniques for electronic devices can provide more seamless communication between two devices. A first device (e.g., a host device) can maintain a list of known-good devices (e.g., accessory devices) with which it can interoperate. Information identifying a second device can be added to the known-good list when the second device successfully connects to the first device and completes an authentication process. After the second device disconnects, the first device can retain the identifying information on the known-good list for a predetermined period of time, after which the information can expire. If the second device reconnects to the host before its information expires, the authentication process can be bypassed.
Any inquiry concerning this communication or earlier communications from the examiner should be directed to MOHAMMAD A SIDDIQI whose telephone number is (571)272-3976. The examiner can normally be reached Monday-Friday.
Examiner interviews are available via telephone, in-person, and video conferencing using a USPTO supplied web-based collaboration tool. To schedule an interview, applicant is encouraged to use the USPTO Automated Interview Request (AIR) at http://www.uspto.gov/interviewpractice.
If attempts to reach the examiner by telephone are unsuccessful, the examiner’s supervisor, Carl G Colin can be reached at 571-272-3862. The fax phone number for the organization where this application or proceeding is assigned is 571-273-8300.
Information regarding the status of published or unpublished applications may be obtained from Patent Center. Unpublished application information in Patent Center is available to registered users. To file and manage patent submissions in Patent Center, visit: https://patentcenter.uspto.gov. Visit https://www.uspto.gov/patents/apply/patent-center for more information about Patent Center and https://www.uspto.gov/patents/docx for information about filing in DOCX format. For additional questions, contact the Electronic Business Center (EBC) at 866-217-9197 (toll-free). If you would like assistance from a USPTO Customer Service Representative, call 800-786-9199 (IN USA OR CANADA) or 571-272-1000.
/MOHAMMAD A SIDDIQI/Primary Examiner, Art Unit 2493