Providing and obtaining one or more data sets via a digital communication network
Inventors
Clanzett, Sebastian • Hennig, Rene • Stevens, Philip
Assignees
Interested in licensing this patent?
MTEC can help explore whether this patent might be available for licensing for your application.
Abstract
A server for providing one or more data sets via a digital communication network is configured for: associating an unique identifier with an identified data set, the unique identifier representing a network address for accessing the identified data set via the digital communication network, wherein the unique identifier is specific to the identified data set; validating an authentication information provided by an authenticator of a client requesting access to the server via the unique identifier; and selectively providing the client with an access right for one or more data sets, if the authentication information identifies the authenticator as being associated with a registered user.
Core Innovation
A server securely provides one or more data sets via a digital communication network by associating each identified data set with a unique identifier that represents a network address for accessing the identified data set and is specific to that data set. A client requests access to the server via the unique identifier, and the server validates authentication information provided by the client.
The client obtains the authentication information by using an authenticator associated with a registered user. The authentication information does not comprise a username, a password and personal data of the registered user, so that the authentication information allows for an anonymized authenticating of the registered user against the server.
The authentication information comprises an encrypted message generated by using the authenticator, and the authenticator is represented by information that does not comprise personal data or a hint on personal data of the registered user associated with the authenticator. The server validates the authentication information using a cryptographic key associated with the registered user and selectively provides the client with an access right for the identified data set or one or more data sets if the authentication information identifies the authenticator as being associated with the registered user.
Correspondingly, a device acquires a data set via the digital communication network by acquiring the unique identifier representing a network address for the data set and sending a request to the server using that unique identifier. The device provides the server with authentication information of an authenticator associated with a registered user, where the authentication information supports anonymized authenticating and includes an encrypted message generated using the authenticator.
Claims Coverage
The document includes five independent claim groups that cover a server for providing one or more data sets, a server for providing a single data set, a device for acquiring a data set, and non-transitory digital storage media for performing the providing and acquiring methods. Across these independent claims, the core inventive features are data-set-specific network addressing via a unique identifier, authenticator-based anonymized authentication without username/password/personal data, encrypted-message authentication information, and cryptographic-key validation associated with a registered user.
Data-set-specific unique identifier as a network address
A server associates a unique identifier with an identified data set, wherein the unique identifier represents a network address for accessing the identified data set via the digital communication network and is specific to the identified data set.
Authenticator-based anonymized authentication without username, password, and personal data
A server validates authentication information obtained by using an authenticator associated with a registered user, wherein the authentication information does not comprise a username, a password and personal data of the registered user so that the authentication information allows for an anonymized authenticating of the registered user against the server.
Encrypted-message authentication information generated by the authenticator
The authentication information comprises an encrypted message generated by using the authenticator, and the authenticator is represented by information that does not comprise personal data or a hint on personal data of the registered user associated with the authenticator.
Cryptographic-key validation associated with the registered user
The server validates the authentication information using a cryptographic key associated with the registered user.
Selective provision of access right based on registered-user association
The server selectively provides the client with an access right for the identified data set or one or more data sets if the authentication information identifies the authenticator as being associated with the registered user.
Client request and device-side provision for acquiring a data set
A device acquires a data set via a digital communication network by acquiring the unique identifier representing a network address for the data set, sending a request to the server using that unique identifier, and providing authentication information of an authenticator associated with a registered user.
Non-transitory digital storage medium implementing providing and acquiring
A non-transitory digital storage medium having a computer program stored thereon performs a method for providing one or more data sets or a method for acquiring a data set via a digital communication network, including associating a data-set-specific unique identifier, validating authentication information obtained using an authenticator associated with a registered user, and using cryptographic-key-based validation.
Across the independent claims, the coverage centers on dataset-specific unique identifiers used as network addresses, authenticator-based anonymized authentication without username/password/personal data, encrypted-message authentication information generated using the authenticator, cryptographic-key validation associated with the registered user, and selective granting of access rights or requesting and providing authentication information. Non-transitory digital storage media are claimed for performing the providing and acquiring methods.
Stated Advantages
Enables anonymized authenticating of the registered user against the server without using a username, a password and personal data.
Authentication information does not include personal data or a hint on personal data in the representation of the authenticator.
Documented Applications
Secure providing and retrieving one or more data sets over a digital communication network using a data-set-specific unique identifier as a network address.
Client or device acquisition of a data set via a network address unique identifier with authenticator-based anonymized authentication.
Interested in licensing this patent?