Movatterモバイル変換


[0]ホーム

URL:


US20070208936A1 - Means and Method for Single Sign-On Access to a Service Network Through an Access Network - Google Patents

Means and Method for Single Sign-On Access to a Service Network Through an Access Network
Download PDF

Info

Publication number
US20070208936A1
US20070208936A1US10/596,863US59686303AUS2007208936A1US 20070208936 A1US20070208936 A1US 20070208936A1US 59686303 AUS59686303 AUS 59686303AUS 2007208936 A1US2007208936 A1US 2007208936A1
Authority
US
United States
Prior art keywords
user
sso
key
service
network
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Abandoned
Application number
US10/596,863
Inventor
Luis Ramos Robles
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Telefonaktiebolaget LM Ericsson AB
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by IndividualfiledCriticalIndividual
Assigned to TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)reassignmentTELEFONAKTIEBOLAGET LM ERICSSON (PUBL)ASSIGNMENT OF ASSIGNORS INTEREST (SEE DOCUMENT FOR DETAILS).Assignors: DE-GREGORIO-RODRIGUEZ, JESUS-ANGEL, PARDO-BLAZQUEZ, AVELINA, RAMOS ROBLES, LUIS
Publication of US20070208936A1publicationCriticalpatent/US20070208936A1/en
Abandonedlegal-statusCriticalCurrent

Links

Images

Classifications

Definitions

Landscapes

Abstract

The present invention provides means and method for Single Sign-On authentication of a user accessing a service network through an access network when the user has been already authenticated by a core network where the user holds a subscription. Therefore, a number of means are provided in different entities distributed between the core network and the service network, as well as in the user's equipment, for carrying out the proposed method. The Single Sign-On authentication takes place upon matching in the service network a shared key for the user submitted from the core network with another shared key for the user derived at the user's equipment.

Description

Claims (30)

30. An Authentication Gateway (AG) arranged for receiving an access request in a telecommunication core network (CN) from an entity (WLAN-AS) in an access network (WLAN) where a user with a user's equipment (UE) accesses through, the user being a subscriber of the telecommunication CN and being identified by a user's identifier included in the access request, the AG having a means for carrying out an authentication procedure (SIM-based; AKA; EAP) with the UE through the access network (WLAN) in order to authenticate the user; a means for computing at least one secret user's key (Kc) usable as cryptographic material, and a means for deriving from the cryptographic material (Kc) a user's shared key (SSO_key-1) intended for SSO purposes; the AG comprising:
a means for sending for SSO authentication purposes, the user's shared key (SSO_key-1) along with the user's identifier towards a session manager (SSO_SM) serving a service network (SN).
33. A session manager (SSO_SM) serving a service network (SN) for SSO purposes and arranged for managing a session record for a user accessing the service network (SN) through an access network (WLAN), the user having been authenticated by a telecommunication core network (CN) where the user holds a subscription, the session manager (SSO_SM) comprising:
a means for receiving a first user's shared key (SSO_key-1) and a user's identifier from an Authentication Gateway (AG) of the core network (CN) for SSO authentication purposes, the first user's shared key (SSO_key-1) obtainable during the authentication of the user by the core network (CN);
a means for creating a master session for the user that comprises the user's identifier and the received first user's shared key (SSO_key-1); and
a means for checking whether a second user's shared key (SSO_key-2) derived at the user's equipment (UE) and received from a service access authentication node (SAAN) of the service network (SN) matches the first user's shared key (SSO_key-1) included in the master session for the user.
37. A service access authentication node (SAAN) for receiving a request from a user accessing a telecommunication service network (SN) through an access network (WLAN) with a user's equipment (UE) the user already authenticated by a telecommunication core network (CN) where the user holds a subscription, the request including a user's identifier to identify the user, the SAAN comprising:
means for verifying whether an active service session is indicated in the request from the user's equipment;
means for obtaining that a user's shared key (SSO_key-2) derived at the user's equipment (UE) and stored therein; and
means for determining in cooperation with a session manager (SSO_SM) serving the service network (SN) for SSO purposes whether the user's shared key (SSO_key-2) at the user's equipment (UE) matches the one stored in the master session (SSO_key-1) for the user.
46. A user's equipment (UE) usable by a user with a subscription in a telecommunication network and arranged to access a telecommunication service network (SN) through an access network (WLAN), the user's equipment (UE) having means for carrying out an authentication procedure (SIM-based; AKA; EAP) to authenticate the user with a core network (CN), where the user holds the subscription, through the access network (WLAN), means for computing at least one secret user's key (Kc) usable as cryptographic material, means for deriving from the cryptographic material (Kc) a user's shared key (SSO_key-2) intended for SSO purposes, and a repository for storing the user's shared key (SSO_key-2); the user's equipment comprising:
a means for confirming for SSO authentication purposes, the user's shared key (SSO_key-2) stored at the user's equipment towards an entity (SAAN, SSO_SM) in the service network (SN).
50. A method for supporting Single Sign-On services for a user with a user's equipment (UE) arranged for accessing a telecommunication core network (CN) and service network (SN) through an access network (WLAN), the user being identified as subscriber of the telecommunication core network (CN) when accessing the access network (WLAN), the method having the steps of carrying out an authentication procedure for the user between an entity (AG, HLR) of the core network (CN) and the user's equipment (UE); computing at the entity (HLR, AG) of the core network (CN) at least one secret user's key (Kc) usable as cryptographic material; computing at the user's equipment (UE) at least one secret user's key (Kc) usable as cryptographic material; deriving a first user's key (SSO_key-1) from the cryptographic material at the entity (AG) of the core network (CN); deriving a second user's key (SSO_key-2) intended for SSO purposes from the cryptographic material at the user's equipment (UE); the method comprising the further steps of:
creating a master session for the user at an entity (SAAN, SSO_SM) in the service network, the master session comprising a user's identifier and the first user's key (SSO_key-1) usable for SSO authentication purposes;
confirming, for SSO authentication purposes, the second user's shared key (SSO_key-2) derived at the user's equipment towards the entity (SAAN, SSO_SM) in the service network (SN);
verifying whether the second user's shared key (SSO_key-2) matches the first user's shared key (SSO_key-1) for the user at the entity (SAAN, SSO_SM) in the service network (SN); and
granting access to the requested service in the service network (SN) on matching the first and second user's shared keys.
US10/596,8632003-12-292003-12-29Means and Method for Single Sign-On Access to a Service Network Through an Access NetworkAbandonedUS20070208936A1 (en)

Applications Claiming Priority (1)

Application NumberPriority DateFiling DateTitle
PCT/EP2003/014978WO2005064882A2 (en)2003-12-292003-12-29Apparatuses and method for single sign-on access to a service network through an access network

Related Parent Applications (1)

Application NumberTitlePriority DateFiling Date
PCT/EP2003/014978A-371-Of-InternationalWO2005064882A2 (en)2003-12-292003-12-29Apparatuses and method for single sign-on access to a service network through an access network

Related Child Applications (1)

Application NumberTitlePriority DateFiling Date
US12/491,563ContinuationUS8528065B2 (en)2003-12-292009-06-25Means and method for single sign-on access to a service network through an access network

Publications (1)

Publication NumberPublication Date
US20070208936A1true US20070208936A1 (en)2007-09-06

Family

ID=34717140

Family Applications (2)

Application NumberTitlePriority DateFiling Date
US10/596,863AbandonedUS20070208936A1 (en)2003-12-292003-12-29Means and Method for Single Sign-On Access to a Service Network Through an Access Network
US12/491,563Expired - Fee RelatedUS8528065B2 (en)2003-12-292009-06-25Means and method for single sign-on access to a service network through an access network

Family Applications After (1)

Application NumberTitlePriority DateFiling Date
US12/491,563Expired - Fee RelatedUS8528065B2 (en)2003-12-292009-06-25Means and method for single sign-on access to a service network through an access network

Country Status (5)

CountryLink
US (2)US20070208936A1 (en)
EP (2)EP2184934B1 (en)
CN (1)CN101032142B (en)
AU (1)AU2003296749A1 (en)
WO (1)WO2005064882A2 (en)

Cited By (78)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US20050044350A1 (en)*2003-08-202005-02-24Eric WhiteSystem and method for providing a secure connection between networked computers
US20050204031A1 (en)*2004-03-102005-09-15Keith JohnstonSystem and method for comprehensive code generation for system management
US20050204169A1 (en)*2004-03-102005-09-15Tonnesen Steven D.System and method for detection of aberrant network behavior by clients of a network access gateway
US20060041933A1 (en)*2004-08-232006-02-23International Business Machines CorporationSingle sign-on (SSO) for non-SSO-compliant applications
US20060212511A1 (en)*2005-02-232006-09-21Nokia CorporationSystem, method, and network elements for providing a service such as an advice of charge supplementary service in a communication network
US20060218625A1 (en)*2005-03-252006-09-28Sbc Knowledge Ventures, L.P.System and method of locating identity providers in a data network
US20070157298A1 (en)*2005-03-202007-07-05Timothy DingwallMethod and system for providing user access to a secure application
US20070254648A1 (en)*2006-04-142007-11-01Zhang David XFixed mobile roaming service solution
US20080095070A1 (en)*2005-12-052008-04-24Chan Tat KAccessing an IP multimedia subsystem via a wireless local area network
US20080183902A1 (en)*2007-01-312008-07-31Nathaniel CooperContent transform proxy
US20080196089A1 (en)*2007-02-092008-08-14Microsoft CorporationGeneric framework for EAP
US20080196090A1 (en)*2007-02-092008-08-14Microsoft CorporationDynamic update of authentication information
US20090013395A1 (en)*2004-06-282009-01-08Marcus Jane BMethod and system for providing single sign-on user names for web cookies in a multiple user information directory environment
US20090094372A1 (en)*2007-10-052009-04-09Nyang DaehunSecret user session managing method and system under web environment, recording medium recorded program executing it
US20090165102A1 (en)*2007-12-212009-06-25Oracle International CorporationOnline password management
US20090205032A1 (en)*2008-02-112009-08-13Heather Maria HintonIdentification and access control of users in a disconnected mode environment
US7587512B2 (en)2002-10-162009-09-08Eric WhiteSystem and method for dynamic bandwidth provisioning
US7600253B1 (en)*2008-08-212009-10-06International Business Machines CorporationEntity correlation service
US7610621B2 (en)2004-03-102009-10-27Eric WhiteSystem and method for behavior-based firewall modeling
US20090300739A1 (en)*2008-05-272009-12-03Microsoft CorporationAuthentication for distributed secure content management system
US7665130B2 (en)2004-03-102010-02-16Eric WhiteSystem and method for double-capture/double-redirect to a different location
WO2011048551A1 (en)*2009-10-192011-04-28Nokia CorporationUser identity management for permitting interworking of a bootstrapping architecture and a shared identity service
US8023484B1 (en)*2008-04-252011-09-20Clear Wireless LlcMethod for obtaining a mobile internet protocol address
US8036222B1 (en)*2008-04-252011-10-11Clear Wireless LlcMethod for obtaining a mobile internet protocol address
US8117639B2 (en)2002-10-102012-02-14Rocksteady Technologies, LlcSystem and method for providing access control
US20120054844A1 (en)*2010-08-312012-03-01Research In Motion LimitedNetwork Access
US20120159601A1 (en)*2010-12-152012-06-21Microsoft CorporationTransition from WS-Federation Passive Profile to Active Profile
CN102638441A (en)*2011-02-152012-08-15中兴通讯股份有限公司Method and system for realizing single sign on (SSO) in IP multimedia subsystem (IMS) network
US20120216267A1 (en)*2011-02-232012-08-23International Business Machines CorporationUser Initiated and Controlled Identity Federation Establishment and Revocation Mechanism
WO2012068462A3 (en)*2010-11-192012-10-04Aicent, Inc.Method of and system for extending the wispr authentication procedure
US20130125226A1 (en)*2011-04-282013-05-16Interdigital Patent Holdings, Inc.Sso framework for multiple sso technologies
US8543710B2 (en)2004-03-102013-09-24Rpx CorporationMethod and system for controlling network access
US20130304879A1 (en)*2012-04-162013-11-14Vodafone Holding GmbhConfiguration of an end device for an access to a wireless communication network
US20140123265A1 (en)*2012-10-122014-05-01Citrix Systems, Inc.Single Sign-On Access in an Orchestration Framework for Connected Devices
US9009806B2 (en)2013-04-122015-04-14Globoforce LimitedSystem and method for mobile single sign-on integration
US9280377B2 (en)2013-03-292016-03-08Citrix Systems, Inc.Application with multiple operation modes
US20160119318A1 (en)*2014-10-242016-04-28Netflix, IncEfficient start-up for secured connections and related services
US9369449B2 (en)2013-03-292016-06-14Citrix Systems, Inc.Providing an enterprise application store
US9378359B2 (en)2011-10-112016-06-28Citrix Systems, Inc.Gateway for controlling mobile device access to enterprise resources
US20160191500A1 (en)*2008-05-072016-06-30International Business Machines CorporationConsolidated authentication
US9455886B2 (en)2013-03-292016-09-27Citrix Systems, Inc.Providing mobile device management functionalities
US9516022B2 (en)2012-10-142016-12-06Getgo, Inc.Automated meeting room
US9521147B2 (en)2011-10-112016-12-13Citrix Systems, Inc.Policy based application management
US9521117B2 (en)2012-10-152016-12-13Citrix Systems, Inc.Providing virtualized private network tunnels
US20170063545A1 (en)*2013-05-162017-03-02Megachips CorporationRandom number generating device, cipher processing device, storage device, and information processing system
US9602474B2 (en)2012-10-162017-03-21Citrix Systems, Inc.Controlling mobile device access to secure data
US9606774B2 (en)2012-10-162017-03-28Citrix Systems, Inc.Wrapping an application with field-programmable business logic
US9654508B2 (en)2012-10-152017-05-16Citrix Systems, Inc.Configuring and providing profiles that manage execution of mobile applications
US9667635B2 (en)*2015-03-262017-05-30Cisco Technology, Inc.Creating three-party trust relationships for internet of things applications
US9716999B2 (en)2011-04-182017-07-25Syniverse Communicationsm, Inc.Method of and system for utilizing a first network authentication result for a second network
US20170318054A1 (en)*2016-04-292017-11-02Attivo Networks Inc.Authentication incident detection and management
US9971585B2 (en)2012-10-162018-05-15Citrix Systems, Inc.Wrapping unmanaged applications on a mobile device
US9985850B2 (en)2013-03-292018-05-29Citrix Systems, Inc.Providing mobile device management functionalities
US10097584B2 (en)2013-03-292018-10-09Citrix Systems, Inc.Providing a managed browser
US10284627B2 (en)2013-03-292019-05-07Citrix Systems, Inc.Data management for an application with multiple operation modes
US20190342280A1 (en)*2018-05-032019-11-07Vmware, Inc.Authentication service
US10826945B1 (en)2019-06-262020-11-03Syniverse Technologies, LlcApparatuses, methods and systems of network connectivity management for secure access
US10855670B2 (en)2018-05-032020-12-01Vmware, Inc.Polling service
US10908896B2 (en)2012-10-162021-02-02Citrix Systems, Inc.Application wrapping for application management framework
US11089005B2 (en)2019-07-082021-08-10Bank Of America CorporationSystems and methods for simulated single sign-on
US11115401B2 (en)2019-07-082021-09-07Bank Of America CorporationAdministration portal for simulated single sign-on
US11202255B1 (en)2020-07-312021-12-14T-Mobile Usa, Inc.Cached entity profiles at network access nodes to re-authenticate network entities
US11323432B2 (en)2019-07-082022-05-03Bank Of America CorporationAutomatic login tool for simulated single sign-on
US11399019B2 (en)2014-10-242022-07-26Netflix, Inc.Failure recovery mechanism to re-establish secured communications
US20220294788A1 (en)*2021-03-092022-09-15Oracle International CorporationCustomizing authentication and handling pre and post authentication in identity cloud service
US11533297B2 (en)2014-10-242022-12-20Netflix, Inc.Secure communication channel with token renewal mechanism
US11580218B2 (en)2019-05-202023-02-14Sentinel Labs Israel Ltd.Systems and methods for executable code detection, automatic feature extraction and position independent code detection
US11579857B2 (en)2020-12-162023-02-14Sentinel Labs Israel Ltd.Systems, methods and devices for device fingerprinting and automatic deployment of software in a computing network using a peer-to-peer approach
US11616812B2 (en)2016-12-192023-03-28Attivo Networks Inc.Deceiving attackers accessing active directory data
US11625485B2 (en)2014-08-112023-04-11Sentinel Labs Israel Ltd.Method of malware detection and system thereof
US11695800B2 (en)2016-12-192023-07-04SentinelOne, Inc.Deceiving attackers accessing network data
US11696137B2 (en)2020-07-312023-07-04T-Mobile Usa, Inc.Detecting malicious small cells based on a connectivity schedule
US11716342B2 (en)2017-08-082023-08-01Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US11770377B1 (en)*2020-06-292023-09-26Cyral Inc.Non-in line data monitoring and security services
US11886591B2 (en)2014-08-112024-01-30Sentinel Labs Israel Ltd.Method of remediating operations performed by a program and system thereof
US11888897B2 (en)2018-02-092024-01-30SentinelOne, Inc.Implementing decoys in a network environment
US11899782B1 (en)2021-07-132024-02-13SentinelOne, Inc.Preserving DLL hooks
US20240205681A1 (en)*2018-07-022024-06-20Soracom, Inc.Updating a Subscriber Identity Module

Families Citing this family (18)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US8046578B1 (en)*2004-04-142011-10-25Hewlett-Packard Development Comopany, L.P.System and method for providing HTML authentication using an access controller
KR100644616B1 (en)*2004-06-102006-11-10세종대학교산학협력단 Markup Language-based Single Authentication Method and System for the Same
WO2006135285A2 (en)*2005-06-152006-12-21Telefonaktiebolaget Lm Ericsson (Publ)Method and apparatus for providing a telecommunications service
EP2027666B1 (en)*2006-06-092018-02-28Telefonaktiebolaget LM Ericsson (publ)Access to services in a telecommunications network
CN101483525A (en)*2009-01-222009-07-15中兴通讯股份有限公司Implementing method for authentication center
KR101442136B1 (en)*2009-08-312014-09-18차이나 모바일 커뮤니케이션즈 코포레이션Service access method, system and device based on wlan access authentication
US8984588B2 (en)2010-02-192015-03-17Nokia CorporationMethod and apparatus for identity federation gateway
US8881247B2 (en)*2010-09-242014-11-04Microsoft CorporationFederated mobile authentication using a network operator infrastructure
US9536074B2 (en)2011-02-282017-01-03Nokia Technologies OyMethod and apparatus for providing single sign-on for computation closures
WO2012173539A1 (en)*2011-06-162012-12-20Telefonaktiebolaget L M Ericsson (Publ)Authentication server and communication device
EP2820797A1 (en)*2012-02-292015-01-07Interdigital Patent Holdings, Inc.Provision of network access and network services without subscription or pre-paid agreement
US9774658B2 (en)2012-10-122017-09-26Citrix Systems, Inc.Orchestration framework for connected devices
CN103118379A (en)*2013-02-062013-05-22西北工业大学Node cooperation degree evaluation method facing mobile ad hoc network
US9166791B2 (en)2013-11-202015-10-20At&T Intellectual Property I, L.P.Method and apparatus for user identity verification
SE1551176A1 (en)*2015-09-142017-03-15Identitrade AbMethod and system for authenticating a user
US9769668B1 (en)2016-08-012017-09-19At&T Intellectual Property I, L.P.System and method for common authentication across subscribed services
US11050832B2 (en)2017-03-292021-06-29Citrix Systems, Inc.Maintaining a session across multiple web applications
US10936337B2 (en)*2018-11-092021-03-02Citrix Systems, Inc.Rendering content of service providers via web page having dynamically-loaded plugins

Citations (8)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US6253327B1 (en)*1998-12-022001-06-26Cisco Technology, Inc.Single step network logon based on point to point protocol
US6571289B1 (en)*1998-08-032003-05-27Sun Microsystems, Inc.Chained registrations for mobile IP
US20030163733A1 (en)*2002-02-282003-08-28Ericsson Telefon Ab L MSystem, method and apparatus for federated single sign-on services
US20030171112A1 (en)*2000-09-012003-09-11Siemens AktiengesellschaftGeneric wlan architecture
US6643782B1 (en)*1998-08-032003-11-04Cisco Technology, Inc.Method for providing single step log-on access to a differentiated computer network
US20040225878A1 (en)*2003-05-052004-11-11Jose Costa-RequenaSystem, apparatus, and method for providing generic internet protocol authentication
US6876747B1 (en)*2000-09-292005-04-05Nokia Networks OyMethod and system for security mobility between different cellular systems
US20070130471A1 (en)*2003-08-262007-06-07Walker Pina John MApparatus and method for authenticating a user when accessing to multimedia services

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
EP1314278A2 (en)*2000-08-302003-05-28Telefonaktiebolaget LM Ericsson (publ)End-user authentication independent of network service provider
DE60130037T2 (en)*2000-11-092008-05-08International Business Machines Corp. PROCESS AND SYSTEM FOR WEB-BASED CROSS-DOMAIN AUTHORIZATION WITH UNIQUE REGISTRATION
CN1268093C (en)*2002-03-082006-08-02华为技术有限公司Distribution method of wireless local area network encrypted keys

Patent Citations (8)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US6571289B1 (en)*1998-08-032003-05-27Sun Microsystems, Inc.Chained registrations for mobile IP
US6643782B1 (en)*1998-08-032003-11-04Cisco Technology, Inc.Method for providing single step log-on access to a differentiated computer network
US6253327B1 (en)*1998-12-022001-06-26Cisco Technology, Inc.Single step network logon based on point to point protocol
US20030171112A1 (en)*2000-09-012003-09-11Siemens AktiengesellschaftGeneric wlan architecture
US6876747B1 (en)*2000-09-292005-04-05Nokia Networks OyMethod and system for security mobility between different cellular systems
US20030163733A1 (en)*2002-02-282003-08-28Ericsson Telefon Ab L MSystem, method and apparatus for federated single sign-on services
US20040225878A1 (en)*2003-05-052004-11-11Jose Costa-RequenaSystem, apparatus, and method for providing generic internet protocol authentication
US20070130471A1 (en)*2003-08-262007-06-07Walker Pina John MApparatus and method for authenticating a user when accessing to multimedia services

Cited By (160)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US8117639B2 (en)2002-10-102012-02-14Rocksteady Technologies, LlcSystem and method for providing access control
US8484695B2 (en)2002-10-102013-07-09Rpx CorporationSystem and method for providing access control
US7587512B2 (en)2002-10-162009-09-08Eric WhiteSystem and method for dynamic bandwidth provisioning
US8381273B2 (en)2003-08-202013-02-19Rpx CorporationSystem and method for providing a secure connection between networked computers
US7624438B2 (en)2003-08-202009-11-24Eric WhiteSystem and method for providing a secure connection between networked computers
US20050044350A1 (en)*2003-08-202005-02-24Eric WhiteSystem and method for providing a secure connection between networked computers
US8429725B2 (en)2003-08-202013-04-23Rpx CorporationSystem and method for providing a secure connection between networked computers
US7610621B2 (en)2004-03-102009-10-27Eric WhiteSystem and method for behavior-based firewall modeling
US8397282B2 (en)2004-03-102013-03-12Rpx CorporationDynamically adaptive network firewalls and method, system and computer program product implementing same
US8543693B2 (en)2004-03-102013-09-24Rpx CorporationSystem and method for detection of aberrant network behavior by clients of a network access gateway
US20050204169A1 (en)*2004-03-102005-09-15Tonnesen Steven D.System and method for detection of aberrant network behavior by clients of a network access gateway
US8019866B2 (en)2004-03-102011-09-13Rocksteady Technologies, LlcSystem and method for detection of aberrant network behavior by clients of a network access gateway
US7590728B2 (en)2004-03-102009-09-15Eric WhiteSystem and method for detection of aberrant network behavior by clients of a network access gateway
US7509625B2 (en)2004-03-102009-03-24Eric WhiteSystem and method for comprehensive code generation for system management
US8543710B2 (en)2004-03-102013-09-24Rpx CorporationMethod and system for controlling network access
US7665130B2 (en)2004-03-102010-02-16Eric WhiteSystem and method for double-capture/double-redirect to a different location
US20050204031A1 (en)*2004-03-102005-09-15Keith JohnstonSystem and method for comprehensive code generation for system management
US8291088B2 (en)*2004-06-282012-10-16International Business Machines CorporationMethod and system for providing single sign-on user names for web cookies in a multiple user information directory environment
US20090013395A1 (en)*2004-06-282009-01-08Marcus Jane BMethod and system for providing single sign-on user names for web cookies in a multiple user information directory environment
US7698734B2 (en)*2004-08-232010-04-13International Business Machines CorporationSingle sign-on (SSO) for non-SSO-compliant applications
US20060041933A1 (en)*2004-08-232006-02-23International Business Machines CorporationSingle sign-on (SSO) for non-SSO-compliant applications
US7865602B2 (en)*2005-02-232011-01-04Nokia Siemens Networks OySystem, method, and network elements for providing a service such as an advice of charge supplementary service in a communication network
US20060212511A1 (en)*2005-02-232006-09-21Nokia CorporationSystem, method, and network elements for providing a service such as an advice of charge supplementary service in a communication network
US20070157298A1 (en)*2005-03-202007-07-05Timothy DingwallMethod and system for providing user access to a secure application
US8381271B2 (en)*2005-03-202013-02-19Actividentity (Australia) Pty, Ltd.Method and system for providing user access to a secure application
US20060218625A1 (en)*2005-03-252006-09-28Sbc Knowledge Ventures, L.P.System and method of locating identity providers in a data network
US7784092B2 (en)*2005-03-252010-08-24AT&T Intellectual I, L.P.System and method of locating identity providers in a data network
US20080095070A1 (en)*2005-12-052008-04-24Chan Tat KAccessing an IP multimedia subsystem via a wireless local area network
US8676195B2 (en)2006-04-142014-03-18Aicent, Inc.Fixed mobile roaming service solution
US20070254648A1 (en)*2006-04-142007-11-01Zhang David XFixed mobile roaming service solution
US8046495B2 (en)2007-01-312011-10-25Fgm, Inc.System and method for modifying web content via a content transform proxy service
US20100106777A1 (en)*2007-01-312010-04-29Nathaniel CooperSystem and method for modifying web content via a content transform proxy service
US7647404B2 (en)*2007-01-312010-01-12Edge Technologies, Inc.Method of authentication processing during a single sign on transaction via a content transform proxy service
US20080183902A1 (en)*2007-01-312008-07-31Nathaniel CooperContent transform proxy
US20080196089A1 (en)*2007-02-092008-08-14Microsoft CorporationGeneric framework for EAP
US20080196090A1 (en)*2007-02-092008-08-14Microsoft CorporationDynamic update of authentication information
US7941831B2 (en)*2007-02-092011-05-10Microsoft CorporationDynamic update of authentication information
US8307411B2 (en)2007-02-092012-11-06Microsoft CorporationGeneric framework for EAP
US20090094372A1 (en)*2007-10-052009-04-09Nyang DaehunSecret user session managing method and system under web environment, recording medium recorded program executing it
US8813200B2 (en)*2007-12-212014-08-19Oracle International CorporationOnline password management
US20090165102A1 (en)*2007-12-212009-06-25Oracle International CorporationOnline password management
US20090205032A1 (en)*2008-02-112009-08-13Heather Maria HintonIdentification and access control of users in a disconnected mode environment
US8782759B2 (en)*2008-02-112014-07-15International Business Machines CorporationIdentification and access control of users in a disconnected mode environment
US8036222B1 (en)*2008-04-252011-10-11Clear Wireless LlcMethod for obtaining a mobile internet protocol address
US8023484B1 (en)*2008-04-252011-09-20Clear Wireless LlcMethod for obtaining a mobile internet protocol address
US20160191500A1 (en)*2008-05-072016-06-30International Business Machines CorporationConsolidated authentication
US9762568B2 (en)*2008-05-072017-09-12International Business Machines CorporationConsolidated authentication
CN102047262B (en)*2008-05-272015-07-22微软公司Authentication for distributed secure content management system
WO2009151730A3 (en)*2008-05-272010-02-04Microsoft CorporationAuthentication for distributed secure content management system
US20090300739A1 (en)*2008-05-272009-12-03Microsoft CorporationAuthentication for distributed secure content management system
US8910255B2 (en)2008-05-272014-12-09Microsoft CorporationAuthentication for distributed secure content management system
US7600253B1 (en)*2008-08-212009-10-06International Business Machines CorporationEntity correlation service
US8943321B2 (en)2009-10-192015-01-27Nokia CorporationUser identity management for permitting interworking of a bootstrapping architecture and a shared identity service
WO2011048551A1 (en)*2009-10-192011-04-28Nokia CorporationUser identity management for permitting interworking of a bootstrapping architecture and a shared identity service
US8607316B2 (en)*2010-08-312013-12-10Blackberry LimitedSimplified authentication via application access server
US20120054844A1 (en)*2010-08-312012-03-01Research In Motion LimitedNetwork Access
WO2012068462A3 (en)*2010-11-192012-10-04Aicent, Inc.Method of and system for extending the wispr authentication procedure
US9020467B2 (en)2010-11-192015-04-28Aicent, Inc.Method of and system for extending the WISPr authentication procedure
US8370914B2 (en)*2010-12-152013-02-05Microsoft CorporationTransition from WS-Federation passive profile to active profile
US20120159601A1 (en)*2010-12-152012-06-21Microsoft CorporationTransition from WS-Federation Passive Profile to Active Profile
CN102638441A (en)*2011-02-152012-08-15中兴通讯股份有限公司Method and system for realizing single sign on (SSO) in IP multimedia subsystem (IMS) network
US8875269B2 (en)*2011-02-232014-10-28International Business Machines CorporationUser initiated and controlled identity federation establishment and revocation mechanism
US20120216267A1 (en)*2011-02-232012-08-23International Business Machines CorporationUser Initiated and Controlled Identity Federation Establishment and Revocation Mechanism
US9716999B2 (en)2011-04-182017-07-25Syniverse Communicationsm, Inc.Method of and system for utilizing a first network authentication result for a second network
TWI589141B (en)*2011-04-282017-06-21內數位專利控股公司User equipment with sso framework for multiple sso technologies
US20130125226A1 (en)*2011-04-282013-05-16Interdigital Patent Holdings, Inc.Sso framework for multiple sso technologies
US10063595B1 (en)2011-10-112018-08-28Citrix Systems, Inc.Secure execution of enterprise applications on mobile devices
US10469534B2 (en)2011-10-112019-11-05Citrix Systems, Inc.Secure execution of enterprise applications on mobile devices
US9378359B2 (en)2011-10-112016-06-28Citrix Systems, Inc.Gateway for controlling mobile device access to enterprise resources
US10402546B1 (en)2011-10-112019-09-03Citrix Systems, Inc.Secure execution of enterprise applications on mobile devices
US11134104B2 (en)2011-10-112021-09-28Citrix Systems, Inc.Secure execution of enterprise applications on mobile devices
US9529996B2 (en)2011-10-112016-12-27Citrix Systems, Inc.Controlling mobile device access to enterprise resources
US10044757B2 (en)2011-10-112018-08-07Citrix Systems, Inc.Secure execution of enterprise applications on mobile devices
US9521147B2 (en)2011-10-112016-12-13Citrix Systems, Inc.Policy based application management
US20130304879A1 (en)*2012-04-162013-11-14Vodafone Holding GmbhConfiguration of an end device for an access to a wireless communication network
US9392077B2 (en)2012-10-122016-07-12Citrix Systems, Inc.Coordinating a computing activity across applications and devices having multiple operation modes in an orchestration framework for connected devices
US9854063B2 (en)2012-10-122017-12-26Citrix Systems, Inc.Enterprise application store for an orchestration framework for connected devices
US9386120B2 (en)*2012-10-122016-07-05Citrix Systems, Inc.Single sign-on access in an orchestration framework for connected devices
US20140123265A1 (en)*2012-10-122014-05-01Citrix Systems, Inc.Single Sign-On Access in an Orchestration Framework for Connected Devices
US9516022B2 (en)2012-10-142016-12-06Getgo, Inc.Automated meeting room
US9973489B2 (en)2012-10-152018-05-15Citrix Systems, Inc.Providing virtualized private network tunnels
US9521117B2 (en)2012-10-152016-12-13Citrix Systems, Inc.Providing virtualized private network tunnels
US9654508B2 (en)2012-10-152017-05-16Citrix Systems, Inc.Configuring and providing profiles that manage execution of mobile applications
US9602474B2 (en)2012-10-162017-03-21Citrix Systems, Inc.Controlling mobile device access to secure data
US9971585B2 (en)2012-10-162018-05-15Citrix Systems, Inc.Wrapping unmanaged applications on a mobile device
US9606774B2 (en)2012-10-162017-03-28Citrix Systems, Inc.Wrapping an application with field-programmable business logic
US10545748B2 (en)2012-10-162020-01-28Citrix Systems, Inc.Wrapping unmanaged applications on a mobile device
US10908896B2 (en)2012-10-162021-02-02Citrix Systems, Inc.Application wrapping for application management framework
US9858428B2 (en)2012-10-162018-01-02Citrix Systems, Inc.Controlling mobile device access to secure data
US10097584B2 (en)2013-03-292018-10-09Citrix Systems, Inc.Providing a managed browser
US9280377B2 (en)2013-03-292016-03-08Citrix Systems, Inc.Application with multiple operation modes
US9948657B2 (en)2013-03-292018-04-17Citrix Systems, Inc.Providing an enterprise application store
US9985850B2 (en)2013-03-292018-05-29Citrix Systems, Inc.Providing mobile device management functionalities
US9413736B2 (en)2013-03-292016-08-09Citrix Systems, Inc.Providing an enterprise application store
US10965734B2 (en)2013-03-292021-03-30Citrix Systems, Inc.Data management for an application with multiple operation modes
US9369449B2 (en)2013-03-292016-06-14Citrix Systems, Inc.Providing an enterprise application store
US10701082B2 (en)2013-03-292020-06-30Citrix Systems, Inc.Application with multiple operation modes
US10476885B2 (en)2013-03-292019-11-12Citrix Systems, Inc.Application with multiple operation modes
US9455886B2 (en)2013-03-292016-09-27Citrix Systems, Inc.Providing mobile device management functionalities
US10284627B2 (en)2013-03-292019-05-07Citrix Systems, Inc.Data management for an application with multiple operation modes
US9009806B2 (en)2013-04-122015-04-14Globoforce LimitedSystem and method for mobile single sign-on integration
US10230715B2 (en)2013-04-122019-03-12Globoforce LimitedSystem and method for mobile single sign-on integration
US10148434B2 (en)*2013-05-162018-12-04Megachips CorporationRandom number generating device, cipher processing device, storage device, and information processing system
US20170063545A1 (en)*2013-05-162017-03-02Megachips CorporationRandom number generating device, cipher processing device, storage device, and information processing system
US12026257B2 (en)2014-08-112024-07-02Sentinel Labs Israel Ltd.Method of malware detection and system thereof
US12235962B2 (en)2014-08-112025-02-25Sentinel Labs Israel Ltd.Method of remediating operations performed by a program and system thereof
US11886591B2 (en)2014-08-112024-01-30Sentinel Labs Israel Ltd.Method of remediating operations performed by a program and system thereof
US11625485B2 (en)2014-08-112023-04-11Sentinel Labs Israel Ltd.Method of malware detection and system thereof
US11533297B2 (en)2014-10-242022-12-20Netflix, Inc.Secure communication channel with token renewal mechanism
US11399019B2 (en)2014-10-242022-07-26Netflix, Inc.Failure recovery mechanism to re-establish secured communications
US10050955B2 (en)*2014-10-242018-08-14Netflix, Inc.Efficient start-up for secured connections and related services
US20160119318A1 (en)*2014-10-242016-04-28Netflix, IncEfficient start-up for secured connections and related services
US9667635B2 (en)*2015-03-262017-05-30Cisco Technology, Inc.Creating three-party trust relationships for internet of things applications
US20170318054A1 (en)*2016-04-292017-11-02Attivo Networks Inc.Authentication incident detection and management
US10542044B2 (en)*2016-04-292020-01-21Attivo Networks Inc.Authentication incident detection and management
US11997139B2 (en)2016-12-192024-05-28SentinelOne, Inc.Deceiving attackers accessing network data
US12418565B2 (en)2016-12-192025-09-16SentinelOne, Inc.Deceiving attackers accessing network data
US11695800B2 (en)2016-12-192023-07-04SentinelOne, Inc.Deceiving attackers accessing network data
US12432253B2 (en)2016-12-192025-09-30SentinelOne, Inc.Deceiving attackers accessing network data
US12261884B2 (en)2016-12-192025-03-25SentinelOne, Inc.Deceiving attackers accessing active directory data
US11616812B2 (en)2016-12-192023-03-28Attivo Networks Inc.Deceiving attackers accessing active directory data
US11838306B2 (en)2017-08-082023-12-05Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US11973781B2 (en)2017-08-082024-04-30Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US12206698B2 (en)2017-08-082025-01-21Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US12244626B2 (en)2017-08-082025-03-04Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US12177241B2 (en)2017-08-082024-12-24Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US12363151B2 (en)2017-08-082025-07-15Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US11716342B2 (en)2017-08-082023-08-01Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US11716341B2 (en)2017-08-082023-08-01Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US11722506B2 (en)2017-08-082023-08-08Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US11876819B2 (en)2017-08-082024-01-16Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US11838305B2 (en)2017-08-082023-12-05Sentinel Labs Israel Ltd.Methods, systems, and devices for dynamically modeling and grouping endpoints for edge networking
US12341814B2 (en)2018-02-092025-06-24SentinelOne, Inc.Implementing decoys in a network environment
US11888897B2 (en)2018-02-092024-01-30SentinelOne, Inc.Implementing decoys in a network environment
US11930001B2 (en)2018-05-032024-03-12Vmware, Inc.Polling service
US11588806B2 (en)*2018-05-032023-02-21Vmware, Inc.Authentication service
US20190342280A1 (en)*2018-05-032019-11-07Vmware, Inc.Authentication service
US10855670B2 (en)2018-05-032020-12-01Vmware, Inc.Polling service
US10855669B2 (en)*2018-05-032020-12-01Vmware, Inc.Authentication service
US20210084026A1 (en)*2018-05-032021-03-18Vmware, Inc.Authentication service
US20240205681A1 (en)*2018-07-022024-06-20Soracom, Inc.Updating a Subscriber Identity Module
US12169556B2 (en)2019-05-202024-12-17Sentinel Labs Israel Ltd.Systems and methods for executable code detection, automatic feature extraction and position independent code detection
US11580218B2 (en)2019-05-202023-02-14Sentinel Labs Israel Ltd.Systems and methods for executable code detection, automatic feature extraction and position independent code detection
US11790079B2 (en)2019-05-202023-10-17Sentinel Labs Israel Ltd.Systems and methods for executable code detection, automatic feature extraction and position independent code detection
US10826945B1 (en)2019-06-262020-11-03Syniverse Technologies, LlcApparatuses, methods and systems of network connectivity management for secure access
US11115401B2 (en)2019-07-082021-09-07Bank Of America CorporationAdministration portal for simulated single sign-on
US11706206B2 (en)2019-07-082023-07-18Bank Of America CorporationAdministration portal for simulated single sign-on
US11323432B2 (en)2019-07-082022-05-03Bank Of America CorporationAutomatic login tool for simulated single sign-on
US11089005B2 (en)2019-07-082021-08-10Bank Of America CorporationSystems and methods for simulated single sign-on
US11770377B1 (en)*2020-06-292023-09-26Cyral Inc.Non-in line data monitoring and security services
US12167242B2 (en)2020-07-312024-12-10T-Mobile Usa, Inc.Detecting malicious small cells based on a connectivity schedule
US11202255B1 (en)2020-07-312021-12-14T-Mobile Usa, Inc.Cached entity profiles at network access nodes to re-authenticate network entities
US11696137B2 (en)2020-07-312023-07-04T-Mobile Usa, Inc.Detecting malicious small cells based on a connectivity schedule
US11579857B2 (en)2020-12-162023-02-14Sentinel Labs Israel Ltd.Systems, methods and devices for device fingerprinting and automatic deployment of software in a computing network using a peer-to-peer approach
US11748083B2 (en)2020-12-162023-09-05Sentinel Labs Israel Ltd.Systems, methods and devices for device fingerprinting and automatic deployment of software in a computing network using a peer-to-peer approach
US12423078B2 (en)2020-12-162025-09-23Sentinel Labs Israel Ltd.Systems, methods and devices for device fingerprinting and automatic deployment of software in a computing network using a peer-to-peer approach
US12238101B2 (en)*2021-03-092025-02-25Oracle International CorporationCustomizing authentication and handling pre and post authentication in identity cloud service
US20220294788A1 (en)*2021-03-092022-09-15Oracle International CorporationCustomizing authentication and handling pre and post authentication in identity cloud service
US12259967B2 (en)2021-07-132025-03-25SentinelOne, Inc.Preserving DLL hooks
US11899782B1 (en)2021-07-132024-02-13SentinelOne, Inc.Preserving DLL hooks

Also Published As

Publication numberPublication date
WO2005064882A2 (en)2005-07-14
AU2003296749A8 (en)2005-07-21
EP1719316A2 (en)2006-11-08
CN101032142A (en)2007-09-05
US20090265554A1 (en)2009-10-22
EP1719316B1 (en)2012-05-23
WO2005064882A3 (en)2007-12-27
US8528065B2 (en)2013-09-03
EP2184934B1 (en)2012-12-05
AU2003296749A1 (en)2005-07-21
CN101032142B (en)2011-05-18
EP2184934A1 (en)2010-05-12

Similar Documents

PublicationPublication DateTitle
US8528065B2 (en)Means and method for single sign-on access to a service network through an access network
US8589675B2 (en)WLAN authentication method by a subscriber identifier sent by a WLAN terminal
EP3750342B1 (en)Mobile identity for single sign-on (sso) in enterprise networks
JP4801147B2 (en) Method, system, network node and computer program for delivering a certificate
US9716999B2 (en)Method of and system for utilizing a first network authentication result for a second network
US7707412B2 (en)Linked authentication protocols
US7472273B2 (en)Authentication in data communication
US8990925B2 (en)Security for a non-3GPP access to an evolved packet system
US20070178885A1 (en)Two-phase SIM authentication
US20150327073A1 (en)Controlling Access of a User Equipment to Services
CN101578841B (en)Authentication in communication networks
US20060019635A1 (en)Enhanced use of a network access identifier in wlan
van Thanhe et al.Strong authentication for web services with mobile universal identity
JP6205391B2 (en) Access point, server, communication system, wireless communication method, connection control method, wireless communication program, and connection control program
Asokan et al.Man-in-the-middle in tunnelled authentication
CN119790623A (en) Two-factor authentication
BountakasMobile connect authentication with EAP-AKA
LatzeTowards a secure and user friendly authentication method for public wireless networks
UbisafeThe Mobile Phone as Authentication Token

Legal Events

DateCodeTitleDescription
ASAssignment

Owner name:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL), SWEDEN

Free format text:ASSIGNMENT OF ASSIGNORS INTEREST;ASSIGNORS:PARDO-BLAZQUEZ, AVELINA;DE-GREGORIO-RODRIGUEZ, JESUS-ANGEL;RAMOS ROBLES, LUIS;REEL/FRAME:018996/0562;SIGNING DATES FROM 20060630 TO 20060704

STCBInformation on status: application discontinuation

Free format text:ABANDONED -- FAILURE TO RESPOND TO AN OFFICE ACTION


[8]ページ先頭

©2009-2025 Movatter.jp