发明名称 Secure mobile framework
摘要 Systems and methods for a secure mobile framework to securely connect applications running on mobile devices to services within an enterprise are provided. Various embodiments provide mechanisms of securitizing data and communication between mobile devices and end point services accessed from a gateway of responsible authorization, authentication, anomaly detection, fraud detection, and policy management. Some embodiments provide for the integration of server and client side security mechanisms, binding of a user/application/device to an endpoint service along with multiple encryption mechanisms. For example, the secure mobile framework provides a secure container on the mobile device, secure files, a virtual file system partition, a multiple level authentication approach (e.g., to access a secure container on the mobile device and to access enterprise services), and a server side fraud detection system.
申请公布号 US9565212(B2) 申请公布日期 2017.02.07
申请号 US201313854837 申请日期 2013.04.01
申请人 SNCR, LLC 发明人 Faltyn Daniel;Smith Andrew J. R.
分类号 H04L29/06;H04W12/08;H04W12/06 主分类号 H04L29/06
代理机构 Synchronoss Technologies, Inc. 代理人 Synchronoss Technologies, Inc. ;Dour Frederick W.
主权项 1. A method comprising: receiving, at a gateway associated with an enterprise, an authentication request from a remote user device to access a service provided by the enterprise, wherein the authentication request originates from an application managed by the enterprise and which runs on the remote user device, and wherein the authentication request comprises a password, an identifier of the remote user device, an application family, and a type of the device; generating a framework authentication token using the received password, identifier of the remote user device, application family, and type of device, and a security policy based on the service provided by the enterprise that the remote user device is requesting to access; transmitting the framework authentication token and the security policy to the remote user device, wherein the remote user device ensures compliance with the security policy before generating a connection request to connect to the service; and receiving, from the remote user device, the connection request based on the framework authentication token and the security policy, wherein a service authenticator determines if the remote user device is authorized to access the service.
地址 Bridgewater NJ US