US 12,407,687 B2
Techniques for dynamically adjusting authenticator assurance levels
Johannes Stockmann, Woodinville, WA (US)
Filed by Okta, Inc., San Francisco, CA (US)
Filed on Jan. 27, 2023, as Appl. No. 18/160,615.
Prior Publication US 2024/0259371 A1, Aug. 1, 2024
Int. Cl. H04L 9/40 (2022.01)
CPC H04L 63/0869 (2013.01) [H04L 63/105 (2013.01); H04L 2463/082 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method for managing assurance levels at a first device, comprising:
obtaining, at a software platform of the first device, a first request to enroll a first authenticator for accessing a resource via the software platform, wherein the first request uses a second authenticator to authorize enrollment of the first authenticator;
validating the second authenticator in response to the first request;
enabling, in response to validating the second authenticator and based at least in part on a first characteristic associated with the first authenticator being common to the first authenticator and the second authenticator, the first authenticator to attest the first characteristic associated with the first authenticator;
enabling, based at least in part on a first assurance level associated with the first characteristic failing to satisfy a threshold assurance level associated with the resource and on a triggering action that validates a second characteristic associated with the first authenticator, the first authenticator to attest the second characteristic, wherein the second characteristic is different from the first characteristic; and
in response to enabling the first authenticator to attest the second characteristic, adjusting an assurance level associated with the first authenticator to a second assurance level that satisfies the threshold assurance level associated with the resource.