发明名称 Pass-Thru for Client Authentication
摘要 This disclosure pertains generally to client authentication. One aspect of the disclosure relates to a first server for presenting evidence to a Domain Controller (DC) of a first authentication context being submitted from a client to the first server to obtain a delegable credential, wherein the credential can be used to request a second authentication context from that client to a second server. Another aspect relates to the first server providing a pass-thru with evidence to a DC. The evidence relates to a first authentication context being submitted from a client to the first server that it obtained a delegable credential. The pass-thru is used in combination with the credential to request a second authentication context from the client to a second server.
申请公布号 US2014189823(A1) 申请公布日期 2014.07.03
申请号 US201414147998 申请日期 2014.01.06
申请人 Microsoft Corporation 发明人 Mowers David R.;Banes John A.;Simon Daniel R.;Leach Paul J.
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. An apparatus, comprising: a first ticket providing a first authentication context for authenticating a client for a first server by performing authentication calculations; a second ticket providing a second authentication context for authenticating the client for a second server, wherein the second ticket is generated based on a pass-through with evidence produced by a Domain Controller (DC).
地址 Redmond WA US