Whitelist construction

US2017118167A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2017118167-A1
Application numberUS-201615249232-A
CountryUS
Kind codeA1
Filing dateAug 26, 2016
Priority dateOct 22, 2015
Publication dateApr 27, 2017
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Techniques are provided for of constructing a whitelist of redirection uniform resource locators (URLs). A method can include receiving, by a computing system executing an access manager application, a request to log out a user from an application executing on a device; determining, by the access manager application, a redirection address for the application; validating, by the access manager application, the redirection address; and based on the validation, causing, by the access manager application, the application to perform one of redirecting the user to the redirection address and determining addition of the redirection address to a list of valid redirection addresses.

First claim

Opening claim text (preview).

What is claimed is: 1 . A method comprising: receiving, by a computing system executing an access manager application, a request to log out a user from an application executing on a device; determining, by the access manager application, a redirection address for the application; validating, by the access manager application, the redirection address; and based on the validation, causing, by the access manager application, the application to perform one of redirecting the user to the redirection address and determining whether to add the redirection address to a list of valid redirection addresses. 2 . The method according to claim 1 , wherein the application redirects the user to the redirection address in response to the redirection address being on the list of valid redirection addresses. 3 . The method according to claim 2 , wherein the list of valid redirection addresses comprises one or more approved redirection addresses. 4 . The method according to claim 2 , wherein the list of valid redirection addresses comprises one of a machine-learned address based on learned previous activity and a user-based address that is based on a user activity. 5 . The method according to claim 1 , wherein the determining the addition of the redirection address to the list of valid redirection addresses comprises: determining that the redirection address corresponds to a predetermined event; and in response to the determining that the redirection address corresponds to the predetermined event, adding the redirection address to the list of valid redirection addresses. 6 . The method according to claim 5 , wherein the predetermined event comprises one of application registration during which the application is registered with the access manager application, product integration during which one or more products are added to operate with the access manager application, and log-in page addition in which a new log-in page for the application is added. 7 . The method according to claim 1 , wherein the determining the addition of the redirection address to the list of valid redirection addresses comprises: determining that the redirection address corresponds to a predetermined user action; and in response to the determining that the redirection address corresponds to the predetermined user action, adding the redirection address to the list of valid redirected addresses. 8 . The method according to claim 7 , wherein the predetermined user action comprises user confirmation of the redirection address. 9 . The method according to claim 1 , wherein the list of valid redirection addresses comprises at least one of a system-level list that applies to users of the access management system and a user-level list that applies to particular users of the access management system. 10 . The method according to claim 9 , wherein the system-level list comprises end URLs that are applicable to all access management system users. 11 . The method according to claim 9 , wherein the user-level list comprises one or more end URLs that are applicable to a particular access management system user. 12 . The method according to claim 1 , wherein the redirection address is a Uniform Resource Locator (URL). 13 . The method according to claim 1 , wherein the redirection address comprises a logout Uniform Resource Locator (URL) and an end URL. 14 . A non-transitory computer-readable storage medium storing a plurality of instructions executable by one or more processors to cause the one or more processors to perform operations, comprising: receiving, by a computing system executing an access manager application, a request to log out a user from an application executing on a device; determining, by the access manager application, a redirection address for the application; validating, by the access manager application, the redirection address; and based on the validation, causing, by the access manager application, the application to perform one of redirecting the user to the redirection address, and determining addition of the redirection address to a list of valid redirection addresses. 15 . The computer-readable storage medium according to claim 14 , wherein the application redirects the user to the redirection address in response to the redirection address being on the list of valid redirection addresses. 16 . The computer-readable storage medium according to claim 15 , wherein the list of valid redirection addresses comprises one or more approved redirection addresses. 17 . The method according to claim 15 , wherein the list of valid redirection addresses comprises one of a machine-learned address based on learned previous activity and a user-based address that is based on a user activity. 18 . A system comprising: a memory; and one or more processors coupled to the memory and configured to: receive, by a computing system executing an access manager application, a request to log out a user from an application executing on a device; determine, by the access manager application, a redirection address from the application; determine, by the access manager application, validity of the redirection address; and based on the validation, cause, by the access manager application, the application to perform one of redirecting the user to the redirection address, and determining addition of the redirection address to a list of valid redirection addresses. 19 . The computer-readable storage medium according to claim 18 , wherein the application redirects the user to the redirection address in response to the redirection address being on the list of valid redirection addresses. 20 . The computer-readable storage medium according to claim 18 , wherein the list of valid redirection addresses comprises at least one of a system-level list that applies to users of the access management system and a user-level list that applies to particular users of the access management system.

Assignees

Inventors

Classifications

  • for initial configuration or provisioning, e.g. plug-and-play · CPC title

  • Organisation or management of web site content, e.g. publishing, maintaining pages or automatic linking · CPC title

  • providing single-sign-on or federations · CPC title

  • Network utilisation, e.g. volume of load or congestion level · CPC title

  • for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2017118167A1 cover?
Techniques are provided for of constructing a whitelist of redirection uniform resource locators (URLs). A method can include receiving, by a computing system executing an access manager application, a request to log out a user from an application executing on a device; determining, by the access manager application, a redirection address for the application; validating, by the access manager a…
Who is the assignee on this patent?
Oracle Int Corp
What technology area does this patent fall under?
Primary CPC classification H04L61/2046. Mapped technology areas include Electricity.
When was this patent published?
Publication date Thu Apr 27 2017 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).