发明名称 SYSTEM AND METHODS FOR PROVIDING STATELESS SECURITY MANAGEMENT FOR WEB APPLICATIONS USING NON-HTTP COMMUNICATIONS PROTOCOLS
摘要 A gateway server interoperates with client and remote server systems to provide stateless security management for a distributed Web application. A Web client application on the client system initiates a WebSocket connection directed to a remote Web service by performing an authentication challenge directed to a user of the Web-browser client where a secure token is not present in a local store instance corresponding to the client application. The authentication challenge obtains the user credentials and then exchanges the user credentials with the gateway server for a secure token. The secure token is then sent in a protocol specific connect message to the gateway server. The gateway server, in response to receipt of the connect message, initiates a WebSocket connection directed to the remote Web service by inspecting the connect message to recover the secure token, evaluating the secure token to obtain user credentials, injecting the secure token with the user credentials, and sending the connect message to the remote Web service.
申请公布号 US2010306547(A1) 申请公布日期 2010.12.02
申请号 US20100788938 申请日期 2010.05.27
申请人 FALLOWS JOHN R;SALIM FRANK J 发明人 FALLOWS JOHN R.;SALIM FRANK J.
分类号 G06F21/20;H04L9/32 主分类号 G06F21/20
代理机构 代理人
主权项
地址
您可能感兴趣的专利