US 7,249,262 C1 (13,304th)
Method for restricting access to a web site by remote users
Leon E. Hauck, Glendale, AZ (US); and Brent J. Burval, Phoenix, AZ (US)
Filed by Leon E. Hauck, Glendale, AZ (US); and Brent J. Burval, Phoenix, AZ (US)
Assigned to BrowserKey, LLC
Reexamination Request No. 90/019,856, Feb. 21, 2025.
Reexamination Certificate for Patent 7,249,262, issued Jul. 24, 2007, Appl. No. 10/139,924, May 6, 2002.
Ex Parte Reexamination Certificate issued on Aug. 4, 2026.
Int. Cl. H04L 67/00 (2022.01); H04L 9/40 (2022.01); H04L 67/02 (2022.01); H04L 67/14 (2022.01); H04L 67/142 (2022.01); H04L 69/329 (2022.01)
CPC H04L 67/34 (2013.01) [H04L 63/08 (2013.01); H04L 63/0876 (2013.01); H04L 67/02 (2013.01); H04L 67/14 (2013.01); H04L 67/142 (2013.01); H04L 69/329 (2013.01)]
OG exemplary drawing
AS A RESULT OF REEXAMINATION, IT HAS BEEN DETERMINED THAT:
The patentability of claims 14-17 is confirmed.
Claims 11-13 are cancelled.
Claims 1-10 and 18 were not reexamined.
1. A method of restricting access to data maintained on a server computer by an authorized client machine, said method comprising the steps of:
a. installing a client-side software program on the client machine for generating a client machine-specific identifier, the client machine-specific identifier being substantially unique to the particular machine upon which such client-side software program is initially installed;
b. operating the client-side software program on the client machine to generate the client machine-specific identifier;
c. generating a password remote from the client machine and providing the password to a user of the client machine, the password being derived from the client machine-specific identifier generated in step b., and uniquely corresponding thereto;
d. issuing a request by the client machine to the server computer for access to data maintained on the server computer;
e. responding to the request for access of step d. by having the client machine re-generate its machine-specific identifier;
f. verifying on the client machine whether the client machine-specific identifier re-generated in step e. uniquely corresponds with the password generated in step c.; and
g. recognizing the client machine as being authorized to access data maintained on the server computer if the verification performed by step f. is true, and refusing to recognize the client machine as being authorized to access data maintained on the server computer if the verification performed by step f. is false.