发明名称 Session certificates
摘要 A client device requests permission from a network access device to access a network associated with the network access device. The client device sends credentials of a user associated with the client device for authenticating with the network access device. The client device receives from the network access device permission to access the network along with a session certificate and an associated key. The session certificate and the key are associated with the credentials of the user. The client device establishes a network session using the network based on receiving the permission. During the network session, the client device establishes a secure communications channel with a website. The client device authenticates the user to the website by sending the session certificate to the website over the secure communications channel. The client device then receives permission from the website to access contents of the website.
申请公布号 US9166969(B2) 申请公布日期 2015.10.20
申请号 US201213706398 申请日期 2012.12.06
申请人 Cisco Technology, Inc. 发明人 Hershberg Yehoshua;Naftali Amir;Shalev Etti;Felder Maya
分类号 H04L29/06;H04L9/32 主分类号 H04L29/06
代理机构 Parker Ibrahim & Berg LLC 代理人 Parker Ibrahim & Berg LLC ;Behmke James M.;LeBarron Stephen D.
主权项 1. A method comprising: requesting, by a client device, permission from a network access device to access a network associated with the network access device; sending, from the client device, credentials of a user for authenticating with the network access device, wherein the user is associated with the client device; receiving, at the client device and from the network access device, permission to access the network along with a session certificate and an associated key, wherein the session certificate and the key are associated with the credentials of the user; based on receiving the permission, establishing, by the client device, a network session using the network; establishing, by the client device during the network session, a secure communications channel with a web server associated with a website; authenticating, using the client device, the user to the website by sending the session certificate to the web server over the secure communications channel; and based on information received at the web server from an authentication, authorization and accounting (AAA) server indicating that the session certificate is valid in response to the web server requesting the information from the AAA server, receiving, from the web server at the client device, permission from the website to access contents of the website, wherein the information received by the web server from the AAA server indicating that the session certificate is valid is based on information received at the AAA server from the network access device relating to the status of the network session, and wherein the request from the web server to the AAA server for information includes information on the session certificate.
地址 San Jose CA US