IP Library Granted Patent US 9,197,627
Granted Patent B2
US 9,197,627 · App. 14/586,833 · Granted Nov 24, 2015

Leveraging a persistent connection to access a secured service

Inventor: Robert Bruce Hirsh (Dulles, VA)
Assignee: FACEBOOK, INC.
H04L63/08H04L63/083H04L63/0815H04L63/0884H04L67/26
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,197,627
App. No.
14/586,833
Granted
Nov 24, 2015
Kind
B2
Abstract

Leveraging a persistent connection to provide a client access to a secured service may include establishing a persistent connection with a client in response to a first request from the client, and brokering a connection between the client and a secured service based on a second request from the client by leveraging the persistent connection with the client. The brokering may occur before the client attempts to connect to the secured service directly and the connection may be established between the client and the secured service without provision by the client of authentication information duplicative or additional to authentication information provided by the client to establish the persistent connection.

Claims (39)

1. A method comprising;

establishing an authenticated connection with a client;

receiving, from the client, a request for authorization to access a service;

in response to receiving the request for authorization, allowing the client to request access to the service from a computer system associated with the service;

in response to the client requesting access to the service, receiving from the computer system associated with the service temporary access information for the service; and

transmitting the temporary access information to the client to enable the client to provide the temporary access information to the computer system associated with the service to establish an authorized connection between the client and the service.

2. The method of claim 1 wherein transmitting the temporary access information to the client to enable the client to provide the temporary access information to the computer system associated with the service to establish an authenticated connection between the client and the service comprises transmitting the temporary access information including a target connection point to the client to enable the client to provide the temporary access information to the computer system associated with the service at the target connection point to establish an authenticated connection between the client and the service.

3. The method of claim 1 wherein receiving, from the computer system associated with the service, the temporary access information for the service includes receiving, from the computer system associated with the service, temporary access information that includes a constraint that the temporary access information be used within a predetermined time.

4. The method of claim 1 wherein receiving, from the computer system associated with the service, the temporary access information for the service includes receiving, from the computer system associated with the service, temporary access information that includes a constraint that the temporary access information be used no more than a predetermined number of times.

5. The method of claim 1 wherein receiving, from the computer system associated with the service, the temporary access information for the service includes receiving, from the computer system associated with the service, temporary access information that includes a constraint that the temporary access information be received from only the client.

6. The method of claim 1 wherein receiving, from the computer system associated with the service, the temporary access information for the service includes receiving, from the computer system associated with the service, a temporary password.

7. The method of claim 1 wherein:

the computer system associated with the service comprises a separate computer system, and

receiving, from the computer system associated with the service, the temporary access information for the service includes receiving, from the separate computer system associated with the service, temporary access information issued by the separate computer system associated with the service.

8. An apparatus comprising:

one or more processors; and

one or more memories operatively coupled to at least one of the one or more processors and having instructions stored thereon that, when executed by at least one of the one or more processors, cause the apparatus to:

establish an authenticated connection with a client;

receive, from the client, a request for authorization to access a service;

in response to receiving the request for authorization, allow the client to request access to the service from a computer system associated with the service;

in response to the client requesting access to the service, receive from the computer system associated with the service temporary access information; and

transmit the temporary access information to the client to enable the client to provide the temporary access information to the computer system associated with the service to establish an authorized connection between the client and the service.

9. The apparatus of claim 8 wherein the temporary access information includes a target connection point to enable the client to provide the temporary access information to the computer system associated the service at the target connection point to establish an authenticated connection between the client and the service.

10. The apparatus of claim 8 wherein the temporary access information for the service includes a constraint that the temporary access information be used within a predetermined time.

11. The apparatus of claim 8 wherein the temporary access information for the service includes a constraint that the temporary access information be used no more than a predetermined number of times.

12. The apparatus of claim 8 wherein the temporary access information for the service includes a constraint that the temporary access information be received from only the client.

13. The apparatus of claim 8 wherein the temporary access information for the service includes a temporary password.

14. The apparatus of claim 8 wherein the temporary access information for the service includes temporary access information issued by the computer system associated with the service.

15. At least one non-transitory computer-readable medium storing computer-readable instructions that, when executed by one or more computing devices, cause at least one of the one or more computing devices to:

establish an authenticated connection with a client;

receive, from the client, a request for authorization to access a service;

in response to receiving the request for authorization, allow the client to request access to the service from a computer system associated with the service;

in response to the client requesting access to the service, receive from the computer system associated with the service temporary access information, and

transmit the temporary access information to the client to enable the client to provide the temporary access information to the computer system associated with the service to establish an authorized connection between the client and the service.

16. The non-transitory computer-readable medium of claim 15 wherein the temporary access information includes a target connection point to enable the client to provide the temporary access information to the computer system associated the service at the target connection point to establish an authenticated connection between the client and the service.

17. The non-transitory computer-readable medium of claim 15 wherein the temporary access information includes a constraint that the temporary access information be used within a predetermined time.

18. The non-transitory computer-readable medium of claim 15 wherein the temporary access information includes a constraint that the temporary access information be used no more than a predetermined number of times.

19. The non-transitory computer-readable medium of claim 15 wherein the temporary access information that includes a constraint that the temporary access information be received from only the client.

20. The non-transitory computer-readable medium of claim 15 wherein the temporary access information for the service includes a temporary password.

Assignments (5)
CHANGE OF NAME Recorded Dec 20, 2021
From: FACEBOOK, INC.
To: META PLATFORMS, INC.
Reel/Frame 058961/0436 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 9, 2015
From: HIRSH, ROBERT BRUCE
To: AMERICA ONLINE, INC.
Reel/Frame 034922/0722 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 9, 2015
From: AOL LLC
To: AOL INC.
Reel/Frame 034922/0796 →
CHANGE OF NAME Recorded Feb 9, 2015
From: AMERICA ONLINE, INC.
To: AOL LLC
Reel/Frame 034925/0085 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 9, 2015
From: AOL INC.
To: FACEBOOK, INC.
Reel/Frame 034925/0115 →
Continuity (8)
Continuation 14320119 · Jun 30, 2014
Continuation 13620822 · Sep 15, 2012
Continuation 13453178 · Apr 23, 2012
Continuation 12720959 · Mar 10, 2010
Continuation 11767680 · Jun 25, 2007
Continuation 09894919 · Jun 29, 2001
Provisional Application 60282857 · Apr 11, 2001
Related Publication 20150113611A1 · Apr 23, 2015