发明名称 Implementing single sign-on across a heterogeneous collection of client/server and web-based applications
摘要 Leveraging an established authenticated session in obtaining authentication to a client application includes receiving a request for access to a client application requiring authentication of a requestor and determining whether there exist characteristics of leverageable authentications corresponding to established sessions having an authenticated state at a time of the determination. When the determination reveals characteristics of at least one leverageable authentication corresponding to an established session, and attempt is made to obtain access for the requestor to the client application based on the at least one leverageable authentication, and the requestor is provided with a notification related to the 1 attempt to obtain access for the requestor to the client application.
申请公布号 US8832787(B1) 申请公布日期 2014.09.09
申请号 US200912390110 申请日期 2009.02.20
申请人 Citrix Systems, Inc. 发明人 Sanin Aleksey;Toomey Christopher;Keister Alan;Wick Andrew L.;Watkins Robert;Zhang Xiaopeng;Richards Russell;Eaves Donald
分类号 G06F7/04;H04L29/06 主分类号 G06F7/04
代理机构 Banner & Witcoff, Ltd. 代理人 Banner & Witcoff, Ltd.
主权项 1. A method of leveraging an established authenticated session in obtaining authentication to an application, the method comprising: receiving, at an application server system, an application token sent, over a network, by an access device as part of a request to establish an authenticated session with the application server system, the application token being specific to the application server system and being generated by a token generating system in response to a request from the access device, the token generating system generating the token by leveraging a persistent authenticated session established between the access device and another application server system, and the token generating system being different from the access device and the application server system; validating, by the application server system, the application token, the validation being performed by the application server based on the application token and without requiring communication between the application server system and the token generating system after receipt of the application token; and in response to the application validating the application token, establishing, by the application server system, an authenticated session with the access device.
地址 Fort Lauderdale FL US