Authorization and access control system for access rights using relationship graphs
US-2024414161-A1 · Dec 12, 2024 · US
US9467456B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9467456-B2 |
| Application number | US-201414473190-A |
| Country | US |
| Kind code | B2 |
| Filing date | Aug 29, 2014 |
| Priority date | Aug 29, 2014 |
| Publication date | Oct 11, 2016 |
| Grant date | Oct 11, 2016 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Disclosed in the authentication and authorization of a client device to access a plurality of resources, requiring a user of a client device to enter only one set of login information. Authentication and authorization of a client device to access a plurality of resources after an initial set of login information is received by a networked computing environment. After the initial set of login information is received, a series of steps are performed that may be entirely transparent to the user of the client device.
Opening claim text (preview).
What is claimed is: 1. A method for providing a plurality of internet protocol authentications, the method comprising: transmitting login authentication information to a client device, wherein the login authentication information identifies at least a plurality of internet protocol (IP) addresses and a set of one or more ports that are associated with the plurality of internet protocol (IP) addresses; receiving a plurality of login authentication requests from the client device via at least a subset of the set of one or more ports, each login authentication request corresponding to a different internet protocol address of the plurality of internet protocol (IP) addresses; receiving a login complete message from the client device; transmitting a login complete page to the client device before allowing the client device to access one or more resources; and allowing the client device to access the one or more resources. 2. The method of claim 1 , further comprising transmitting response messages to the client device corresponding to one or more of the plurality of login authentication requests received, wherein the response messages are transmitted before receiving the login complete message. 3. The method of claim 1 , further comprising: validating a first login authentication request of the plurality of login authentication requests; and validating a second login authentication request of the plurality of login authentication requests. 4. The method of claim 1 , further comprising individually validating one or more login authentication requests of the plurality of login authentication requests. 5. The method of claim 1 , wherein each of the plurality of login authentication requests is received asynchronously and substantially simultaneously. 6. The method of claim 1 , wherein each of the plurality of login authentication requests received include an authentication token. 7. The method of claim 6 , wherein the authentication token in each of the plurality of login authentication requests is generated by the client device. 8. The method of claim 1 , prior to transmitting the login authentication information, further comprising: receiving a communication from the client device through a WEB browser interface; identifying that the communication corresponds to accessing a resource that requires authentication and authorization for accessing the resource; transmitting an authentication request message to the client device; and receiving login information from the client device. 9. The method of claim 8 , wherein the login information includes a login token. 10. The method of claim 8 , further comprising: transmitting an authentication query to a remote server; and receiving an authentication result from the remote server. 11. A non-transitory computer readable storage medium having embodied thereon a program executable by a processor to perform a method for providing a plurality of internet protocol authentications, the method comprising: transmitting login authentication information to a client device, wherein the login authentication information identifies at least a plurality of internet protocol (IP) addresses and a set of one or more ports that are associated with the plurality of internet protocol (IP) addresses; receiving a plurality of login authentication requests from the client device via at least a subset of the set of one or more ports, each login authentication request corresponding to a different internet protocol address of the plurality of internet protocol (IP) addresses; receiving a login complete message from the client device; transmitting a login complete page to the client device before allowing the client device to access one or more resources; and allowing the client device to access the one or more resources. 12. The non-transitory computer-readable storage medium of claim 11 , the program further executable to transmit response messages to the client device corresponding to one or more of the plurality of login authentication requests received, wherein the response messages are transmitted before receiving the login complete message. 13. The non-transitory computer readable storage medium of claim 11 , wherein the program is further executable to: validate a first login authentication request of the plurality of login authentication requests; and validate a second login authentication request of the plurality of login authentication requests. 14. The non-transitory computer readable storage medium of claim 11 , wherein the program is further executable to individually validate one or more login authentication requests of the plurality of login authentication requests. 15. The non-transitory computer-readable storage medium of claim 11 , wherein each of the plurality of login authentication requests is received asynchronously and substantially simultaneously. 16. The non-transitory computer-readable storage medium of claim 11 , wherein each of the plurality of login authentication requests received include an authentication token. 17. The non-transitory computer-readable storage medium of claim 16 , wherein the authentication token in each of the plurality of login authentication requests is generated by the client device. 18. The non-transitory computer-readable storage medium of claim 11 , wherein prior to transmitting the login authentication information, the program is further executable to: receive a communication from the client device through a WEB browser interface; identify that the communication corresponds to accessing a resource that requires authentication and authorization for accessing the resource; transmit an authentication request message to the client device; and receive login information from the client device. 19. The non-transitory computer-readable storage medium of claim 18 , further comprising: transmitting an authentication query to a remote server; and receiving an authentication result from the remote server. 20. A system for validating login authentication requests, the system comprising: a communication transceiver communicatively coupled to a computer network; a memory; and a processor coupled to the memory and to the communication transceiver, wherein execution of instructions stored in the memory by the processor: transmits login authentication information to a client device, wherein the login authentication information identifies at least a plurality of internet protocol (IP) addresses and a set of one or more ports that are associated with the plurality of internet protocol (IP) addresses, receives a plurality of login authentication requests from the client device via at least a subset of the set of one or more ports, each login authentication request corresponding to a different internet protocol address of the plurality of internet protocol (IP) addresses, receives a login complete message from the client device, transmits a login complete page to the client device before allowing the client device to access one or more resources, and allows the client device to access the one or more resources.
Entity profiles · CPC title
providing single-sign-on or federations · CPC title
Protocols · CPC title
Internet protocol [IP] addresses · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.