发明名称 METHODS AND SYSTEMS FOR PROVIDING TRUSTED SIGNALING OF DOMAIN-SPECIFIC SECURITY POLICIES
摘要 Methods and systems for providing trusted signaling of domain-specific security policies. One method includes intercepting a connection request to a remote server from a client device on a domain and returning a security certificate with policy information for regulating the communications with the target server.
申请公布号 US2015180904(A1) 申请公布日期 2015.06.25
申请号 US201414582633 申请日期 2014.12.24
申请人 Citrix Systems Inc. 发明人 Kennedy John
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method of regulating the use of a network-based on-line presentation application, comprising: storing domain specific administrator policies in a security gateway located in a local domain, wherein the domain specific administrator policies define rights and capabilities of client on-line presentation software when the client on-line presentation software is downloaded from a remote application server computer located outside the local domain and executed on any of a plurality of client computers located in the local domain; intercepting, by the security gateway, a secure connection request transmitted from a copy of the client on-line presentation software executing on a local client computer to the remote server computer, wherein the local client computer is one of the plurality of client computers located in the local domain, the client on-line presentation software executing on the local client computer providing an online presentation to a user of the local client computer, and wherein the client on-line presentation software executing on the local client computer was downloaded from the remote application server computer onto the local client computer; generating, by the security gateway, a replacement certificate, at least in part by copying the domain specific administrator policies into application specific extensions of the replacement certificate; and transmitting, by the security gateway to the local client computer, the replacement certificate, the domain specific administrator policies stored in the application specific extensions of the replacement certificate limiting actions performed by the client on-line presentation software executing on the local client computer in providing the on-line presentation to the user of the local client computer.
地址 Fort Lauderdale FL US