Information security – Access control or authentication – Network
Reexamination Certificate
2008-06-24
2008-06-24
Barron, Jr., Gilberto (Department: 2132)
Information security
Access control or authentication
Network
C726S010000, C713S156000, C713S168000
Reexamination Certificate
active
07392536
ABSTRACT:
A mechanism is provided for signing on a user of a first domain into an affiliate application in a second domain. When the user needs access to the affiliate application, the request for access causes a ticket to be generated. The ticket identifies the user and is passed to an adapter. The adapter, which ultimately will perform the sign on in the affiliate application, redeems the ticket for the user's credentials (e.g., a valid userID/password combination for the affiliate application), and then presents the credentials to the affiliate application. A service is provided that issues tickets, redeems tickets, manages the registration and de-registration of affiliate applications, manages the correlation between a user and the user's credentials with an affiliate application, and manages encryption of stored records.
REFERENCES:
patent: 5604490 (1997-02-01), Blakley, III et al.
patent: 5611048 (1997-03-01), Jacobs et al.
patent: 5655077 (1997-08-01), Jones et al.
patent: 5684950 (1997-11-01), Dare et al.
patent: 5689638 (1997-11-01), Sadovsky
patent: 5719941 (1998-02-01), Swift et al.
patent: 5764890 (1998-06-01), Glasser et al.
patent: 5768504 (1998-06-01), Kells et al.
patent: 5797030 (1998-08-01), Hoaby
patent: 5908469 (1999-06-01), Botz et al.
patent: 6006334 (1999-12-01), Nguyen et al.
patent: 6154843 (2000-11-01), Hart, Jr. et al.
patent: 6178511 (2001-01-01), Cohen et al.
patent: 6223292 (2001-04-01), Dean et al.
patent: 6243816 (2001-06-01), Fang et al.
patent: 6256676 (2001-07-01), Taylor et al.
patent: 6275944 (2001-08-01), Kao et al.
patent: 6308273 (2001-10-01), Goertzel et al.
patent: 6377994 (2002-04-01), Ault et al.
patent: 6389543 (2002-05-01), Dawson et al.
patent: 6442695 (2002-08-01), Dutcher et al.
patent: 2003/0149781 (2003-08-01), Yared et al.
patent: 2004/0003287 (2004-01-01), Zissimopoulos et al.
patent: 2004/0103323 (2004-05-01), Dominic
patent: 2006/0179003 (2006-08-01), Steele et al.
William Stallings (Book, title, “Cryptography and Network Security”, principles and practices, Second Edition) (Year of Publication, 1999 (p. 323-330).
Asaravala, A., “A Question of Identity, Passport, Liberty, and the Single Sign-On Race”,New Architect, 2003, 8(1), 4 pages.
Chinitz, J., “Single Sign-On: Is It Really Possible?”,Information Systems Security, 2000, 9(3), 32-45.
Kilgallen, L.J., “The Hazards of Single Sign-On”,Computer Security Journal, 1994, 10(1), 1-9.
Kornievskaia, O., et al. “Kerberized Credential Translation: A Solution to Web Access Control”,Proceedings of the 10thUSENIX Security Symposium, 2001, 235-249.
Mouly, D., “Single Sign-On: Disspelling the Myths”,Network Computing, 2001, 11(1), 28-29.
Volchkov, A., “Revisiting Single Sign-On, A Pragmatic Approach in an New Context”,IT Professional, 2001, 3(1), 39-45.
Al-Hilali Hilal
Balakrishnan Anil
Elien Jean-Emile
Houser Christopher Robert
Jamieson Steve
Barron Jr. Gilberto
Lemma Samson
Microsoft Corporation
Woodcock & Washburn LLP
LandOfFree
System and method for unified sign-on does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with System and method for unified sign-on, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and System and method for unified sign-on will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-2808383