US 11,943,618 B2
Forcing re-authentication of users for accessing online services
Kanakrai Chauhan, Snoqualmie, WA (US)
Assigned to T-Mobile USA, Inc., Bellevue, WA (US)
Filed by T-Mobile USA, Inc., Bellevue, WA (US)
Filed on Dec. 29, 2020, as Appl. No. 17/137,277.
Prior Publication US 2022/0210646 A1, Jun. 30, 2022
Int. Cl. H04W 12/082 (2021.01); H04W 4/50 (2018.01); H04W 4/60 (2018.01); H04W 12/069 (2021.01); H04W 12/37 (2021.01); H04W 4/24 (2018.01)
CPC H04W 12/082 (2021.01) [H04W 4/50 (2018.02); H04W 4/60 (2018.02); H04W 12/069 (2021.01); H04W 12/37 (2021.01); H04W 4/24 (2013.01)] 17 Claims
OG exemplary drawing
 
1. A method comprising:
receiving, at a wireless carrier network, a request to determine a current status of access rights of a user to access an online service provided by a third-party online service provider based on one or more conditions associated with an account of the user at the wireless carrier network, wherein the request is received from the third-party online service provider of the online service upon a determination that some predetermined amount of time has passed since a latest request to determine access rights was submitted, and wherein a user device of the user is granted access to the online service of the third-party online service provider via a session token that is generated by the third-party online service provider and stored by the wireless carrier network with the account of the user at the wireless carrier network, the session token comprising a string of random characters and being associated with a set of communications between the user device and the third-party online service provider of the online service;
determining, at the wireless carrier network, based on the one or more conditions associated with the account of the user at the wireless carrier network, the current status of access rights of the user to access the online service provided by the third-party online service provider;
upon determining that the current status of access rights indicates that the user is not authorized to access the online service of the third-party online service provider,
generating, at wireless carrier network, programmatic instructions to cause the session token associated with the third-party online service provider to be removed from a memory of the user device; and
providing, via the wireless carrier network, the programmatic instructions to the user device.