IP Library Granted Patent US 9,135,412
Granted Patent B1
US 9,135,412 · App. 14/630,334 · Granted Sep 15, 2015

Token-based security for remote resources

Inventors: Michael Dean Talvensaari (Los Gatos, CA); Ian Zenoni (Highlands Ranch, CO)
Assignee: WOWZA MEDIA SYSTEMS, LLC
G06F21/10H04L63/168G06F2221/0711
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,135,412
App. No.
14/630,334
Granted
Sep 15, 2015
Kind
B1
Abstract

Systems and methods of token-based protection for remote resources are disclosed. For example, a method may include receiving, at a second computing device, a configuration message from a first computing device. The configuration message includes information to configure a resource at the second computing device. For example, the resource may be a cloud transcoder. The method also includes generating, at the second computing device, a short token that enables the first computing device to access the resource. For example, the short token may be used to receive a long token that can be used to send application programming interface (API) requests to the cloud transcoder.

Claims (44)

1. A method comprising:

receiving, at a second computing device, a configuration message from a first computing device, the configuration message including information to configure a transcoder at the second computing device;

generating, at the second computing device, a short token that enables the first computing device to access the transcoder;

generating a long token that enables the first computing device to access an application programming interface (API) supported by the second computing device, wherein the long token is longer than the short token;

sending the short token to the first computing device as a first connection code;

receiving a second connection code from the first computing device;

sending the long token to the first computing device upon verification that the second connection code matches the first connection code; and

receiving an API request from the first computing device, the API request configured to retrieve characteristics of the transcoder.

2. The method of claim 1 , wherein the short token expires a particular time period after being generated.

3. The method of claim 2 , wherein the particular time period is twenty-four hours.

4. The method of claim 1 , wherein the short token is a single-use token.

5. The method of claim 1 , wherein the short token includes eight or fewer alphanumeric characters.

6. The method of claim 1 , wherein the first computing device includes a media server, wherein the second computing device includes a cloud-based server, and wherein the transcoder comprises a cloud computing resource.

7. The method of claim 1 , wherein the first computing device is associated with a capture source, wherein the second computing device includes a cloud-based server, and wherein the transcoder comprises a cloud computing resource.

8. The method of claim 1 , wherein the first computing device is associated with a capture source, wherein the second computing device includes a media server, and wherein the transcoder is provided by the media server.

9. An apparatus comprising:

a processor; and

a memory storing instructions executable by the processor to perform operations comprising:

receiving a configuration message from a first computing device, the configuration message including information to configure a transcoder at a second computing device;

generating a short token that enables the first computing device to access the transcoder;

generating a long token that enables the first computing device to access an application programming interface (API) supported by the processor, wherein the long token is longer than the short token;

sending the short token to the first computing device as a first connection code;

receiving a second connection code from the first computing device;

sending the long token to the first computing device upon verification that the second connection code matches the first connection code; and

receiving an API request from the first computing device, the API request configured to retrieve characteristics of the transcoder.

10. The apparatus of claim 9 , wherein the operations further comprise

processing the API request in response to determining that the API request includes the long token and that the long token is valid.

11. The apparatus of claim 9 , wherein the second connection code is included in a message, and wherein the message, the API request, or both are a hypertext transfer protocol (HTTP) secure (HTTPS) message.

12. The apparatus of claim 11 , wherein the HTTPS message corresponds to a POST command, a PUT command, or a GET command.

13. The apparatus of claim 9 , wherein the API request is further configured to retrieve a status of the transcoder, start the transcoder, stop the transcoder, reset the transcoder, or any combination thereof.

14. A non-transitory computer-readable medium comprising instructions that, when executed by a processor, cause the processor to perform operations comprising:

receiving, at a second computing device, a configuration message from a first computing device, the configuration message including information to configure a transcoder at the second computing device;

generating, at the second computing device, a short token that enables the first computing device to access the transcoder;

generating a long token that enables the first computing device to access an application programming interface (API) supported by the second computing device, wherein the long token is longer than the short token;

sending the short token to the first computing device as a first connection code;

receiving a second connection code from the first computing device;

sending the long token to the first computing device upon verification that the second connection code matches the first connection code; and

receiving an API request from the first computing device, the API request configured to retrieve characteristics of the transcoder.

15. The non-transitory computer-readable medium of claim 14 , wherein the operations further comprise processing the API request in response to determining that the API request includes the long token and that the long token is valid.

16. The non-transitory computer-readable medium of claim 14 , wherein the API request is further configured to retrieve a status of the transcoder, start the transcoder, stop the transcoder, reset the transcoder, or any combination thereof.

17. The non-transitory computer-readable medium of claim 14 , wherein the short token includes eight or fewer alphanumeric characters, and wherein the short token is a single-use token.

18. The method of claim 1 , further comprising processing the API request in response to determining that the API request includes the long token and that the long token is valid.

19. The method of claim 1 , wherein the API request is further configured to retrieve a status of the transcoder, start the transcoder, stop the transcoder, reset the transcoder, or any combination thereof.

20. The method of claim 1 , wherein the second connection code is included in a message, and wherein the message, the API request, or both are a hypertext transfer protocol (HTTP) secure (HTTPS) message.

Assignments (2)
SECURITY INTEREST Recorded May 28, 2021
From: WOWZA MEDIA SYSTEMS, LLC
To: SILICON VALLEY BANK, AS ADMINISTRATIVE AGENT
Reel/Frame 056422/0263 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 25, 2015
From: TALVENSAARI, MICHAEL DEAN; ZENONI, IAN
To: WOWZA MEDIA SYSTEMS, LLC
Reel/Frame 035250/0760 →