×

Single sign-on over the internet using public-key cryptography

  • US 7,246,230 B2
  • Filed: 01/29/2002
  • Issued: 07/17/2007
  • Est. Priority Date: 01/29/2002
  • Status: Active Grant
First Claim
Patent Images

1. A method for use in a Web server for obtaining content from a secure server, in response to a request from a client for the content, without further intervention by the user of the client, the method comprising:

  • sending a request for the content to the secure server;

    receiving an authentication challenge from the secure server in response to the request;

    sending a forwardable ticket to an authentication server trusted by the secure server, the forwardable ticket previously sent to the Web server by the authentication server based on a successful authentication of the client by the authentication server;

    receiving from the authentication server a ticket having a digital signature applied using a private key of a public-private key pair of the authentication server; and

    sending the ticket to the secure server, wherein the secure server, upon verifying the digital signature using a public key of said private-public key pair corresponding to the private key of the authentication server, provides the requested content; and

    whereincommunications with the client employ a generic application-layer network protocol.

View all claims
  • 3 Assignments
Timeline View
Assignment View
    ×
    ×