发明名称 SYSTEM AND METHOD FOR SECURING AUTHENTICATION INFORMATION IN A NETWORKED ENVIRONMENT
摘要 This disclosure is directed to systems and methods for securely communicating authentication information in a networked environment such as one involving a client device, a cloud based computing platform, and an enterprise computing environment. Some embodiments may include encrypting, by a client device using a public key, authentication information provided by a user. The encrypted authentication information is sent to a cloud based service which then sends it to an on-premises component residing behind a firewall of an enterprise. The on-premises component decrypts the authentication information using a private key, validates the authentication information, and returns the result to the cloud based service over a network. If validated, the cloud based service establishes a secure connection between the client device and the on-premises component such that the user can access the enterprise's content without the enterprise having to share the authentication information with the cloud based service.
申请公布号 US2015012751(A1) 申请公布日期 2015.01.08
申请号 US201414318133 申请日期 2014.06.27
申请人 SailPoint Technologies, Inc. 发明人 Forster Craig Robert William;Greff Daniel Thomas;Chow Crandall B.T.;Goldenburg Phillip
分类号 H04L29/06;H04L9/30 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method, comprising: encrypting, by a client device using a public key, original authentication information provided by a user at the client device to generate encrypted authentication information; the client device providing the encrypted authentication information to a cloud based service; the cloud based service providing the encrypted authentication information to an on-premises component residing behind a firewall of an enterprise; the on-premises component decrypting the encrypted authentication information using a private key to obtain the original authentication information; the on-premises component performing a validation on the original authentication information; and the on-premises component returning a result of the validation to the cloud based service over a network.
地址 Wilmington DE US