| US 7,496,948 B1 | ||
| Method for controlling access to a target application | ||
| Rick A. Hamilton, II, Charlottesville, Va. (US); Jenny S. Li, Danbury, Conn. (US); Anne R. Sand, Peyton, Colo. (US); and James W. Seaman, Falls Church, Va. (US) | ||
| Assigned to International Business Machines Corporation, Armonk, N.Y. (US) | ||
| Filed on Feb. 04, 2008, as Appl. No. 12/25,201. | ||
| Int. Cl. H04L 9/32 (2006.01); G06F 15/173 (2006.01); G01C 21/00 (2006.01); G08B 1/08 (2006.01) | ||
| U.S. Cl. 726—1 [726/2; 726/3; 726/4; 726/5; 726/7; 709/225; 701/213; 340/539.1; 380/258; 380/274] | 3 Claims |

| 1. A method for controlling access to a target application, comprising:
determining whether a user is within a predetermined distance from at least one predetermined base device;
determining whether the predetermined base device is within a predetermined geographical region;
receiving user access information associated with the user and authenticating the user access information, utilizing an authentication
server;
authorizing a user computer only when the user is within the predetermined distance from the predetermined base device, and
the predetermined base device is within the predetermined geographical region, and the user access information corresponds
to predetermined access information associated with the user, utilizing the authentication server;
sending an authorization message from the authentication server through a wired or wireless network to a remote server, the
authorization message indicating that the user computer has been authorized to access the target application;
allowing the user computer to access the target application on the remote server in response to the authorization message
being received by the remote server;
wherein determining whether the user is within the predetermined distance from the predetermined base device, comprises:
reading a RFID tag having the user access information utilizing a RFID reader, the RFID reader being associated with the predetermined
base device; and
sending the user access information and a base device identifier associated with the predetermined base device to the authentication
server; and
indicating that the user is within the predetermined distance from the predetermined base device when the authentication server
receives the user access information and the base identifier.
|