| CPC H04L 63/102 (2013.01) [H04L 63/0861 (2013.01); H04L 63/105 (2013.01); H04L 2463/082 (2013.01)] | 19 Claims |

|
1. A method of multi-factor authentication, the method comprising computer executed steps, the steps comprising:
authenticating a user attempting to log in to a cloud service, using a first authentication factor;
allowing the authenticated user to log in to the cloud service;
communicating data identifying the authenticated user to a computer of an authentication service;
receiving a first user-permission policy from the computer of the authentication service, the first user-permission policy being a user-permission policy determined by the authentication service for the user identified by the communicated data, based on a result of an attempt to authenticate the user using a second authentication factor; and
when the user is logged in to the cloud service, restricting usage of the cloud service by the user based on the received first user-permission policy.
|