×

System and method for data and request filtering

  • US 10,505,930 B2
  • Filed: 08/12/2014
  • Issued: 12/10/2019
  • Est. Priority Date: 03/21/2003
  • Status: Active Grant
First Claim
Patent Images

1. A system for monitoring access via a client computer to data provided by a network-based application, the system comprising:

  • an identification database comprising user profiles each corresponding to a user, each of the user profiles including at least one re-authentication trigger event that (i) is associated with the user, and (ii) is stored in the user profile of the user, wherein at least two of the user profiles include re-authentication trigger events of different types each selected from (a) a function initiated by the user or an administrator, (b) a broken communication link, (c) a screen or web page requested by a user, (d) inactivity of the user, (e) passage of a period of time, or (f) a signal from an identification server sent on a periodic or random basis, whereby the identification database comprises, for at least two different users, user profiles for the different users differing from each other by inclusion of different re-authentication trigger events;

    a communications module on the client computer for communicating with a computer network for facilitating authentication and log-in, by a user, to an identification server to initiate a session with an application, and for receiving thereover, from the identification database, the at least one re-authentication trigger event associated with the user;

    a storage device on the client computer for storing the at least one re-authentication trigger event; and

    an active agent operable on the client computer for (i) monitoring ongoing activities of the user during the session, (ii) determining that the user'"'"'s access privileges have not been revoked, (iii) determining that a re-authentication trigger event associated with the user has occurred as the user performs the ongoing activities, and (iv) interrupting user activity in response to determining that the re-authentication trigger event has occurred and thereupon presenting the user with a login screen for re-authentication to the identification server.

View all claims
  • 7 Assignments
Timeline View
Assignment View
    ×
    ×