×

Secure mobile client with assertions for access to service provider applications

  • US 9,152,781 B2
  • Filed: 08/09/2012
  • Issued: 10/06/2015
  • Est. Priority Date: 08/09/2012
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • configuring a Software-as-a-Service (SaaS) access control application, which executes on a client device, with a certificate that identifies a user, configuration information for one or more SaaS applications to access and information to identify an identity provider for a given SaaS application, the SaaS access control application including software to be inserted into a network software stack that executes on the client device and further including embedded identity provider software configured to serve as an identity provider for assertions;

    intercepting, within the network software stack of the client device, a request made by an application on the client device to a SaaS service provider identified by a Universal Resource Locator (URL) provided during configuration of the SaaS access control application;

    redirecting the request made by the application back to the application causing the application to make an identity provider request to the embedded identity provider software executing on the client device;

    generating, by the embedded identity provider software, an assertion based on the certificate and on configuration information provided during configuration of the SaaS access control application; and

    causing the application to make a request to the SaaS service provider with the assertion embedded in the request.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×