IP Library Patent Application 14823416
Patent Application
App. No. 14/823,416

SYSTEMS AND METHODS FOR AUTHENTICATING CREDENTIALS WHEN ESTABLISHING SECURE COMMUNICATION CONNECTION SESSIONS

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
14/823,416
Abstract

Systems and methods for improving the handing of communications between network applications in a computer system with connectivity services interfaces that seamlessly handle the communications in an easy-to-use, secure, message-oriented environment are disclosed. Embodiments of systems and methods for maintaining ownership of sessions by applications, and for avoiding the orphaning of communication sessions when activities are terminated are also disclosed. Also disclosed are embodiments of systems and methods for accessing data using authentication credentials different than the authentication credentials associated with a user that is requesting access to the data. Embodiments of systems and methods for authenticating credentials for establishing a secure communication connection between applications executing on different platforms are also disclosed.

Claims (54)

1 . A method for authenticating credentials for establishing a secure communication connection between applications executing on different platforms, comprising:

receiving, by a processor, a first set of authentication credentials, wherein the first set of authentication credentials comprise credentials for accessing data on a first operation system (OS) platform, and wherein the first set of authentication credentials comprise either an encrypted user identification (ID) and password or first packaged data generated by a first interface executing on a second OS platform; and

selecting, by the processor, a first authentication process from at least two authentication processes to process the first set of authentication credentials when the received first set of authentication credentials comprises an encrypted user ID and password,

wherein processing, by the processor, the first set of authentication credentials in accordance with the selected first authentication process comprises:

decrypting the encrypted user ID and password;

authenticating the decrypted user ID and password with an authentication and session initiation subsystem (ASIS) executing on the first OS platform; and

storing the authenticated user ID.

2 . The method of claim 1 , wherein the first set of authentication credentials do not comprise credentials for accessing data on the second OS platform.

3 . The method of claim 1 , further comprising selecting a second authentication process from the at least two authentication processes to process the first set of authentication credentials when the received first set of authentication credentials comprises the first packaged data.

4 . The method of claim 3 , wherein processing the first set of authentication credentials in accordance with the selected second authentication process comprises:

authenticating the first packaged data with the ASIS;

transmitting to an application executing on the second OS platform second packaged data generated on the first OS platform;

receiving third packaged data generated by the first interface executing on the second OS platform in response to validation of the second packaged data on the second OS platform;

authenticating the third packaged data with the ASIS; and

storing the authenticated third package data.

5 . The method of claim 1 , further comprising accessing data with a network application executing on the first OS platform using the stored authenticated user ID.

6 . The method of claim 1 , wherein processing the first set of authentication credentials in accordance with the selected first authentication process establishes a secure communication connection between an application executing on the first OS platform and an application executing on the second OS platform.

7 . A computer program product, comprising:

a non-transitory computer readable medium comprising instructions which, when executed by a processor of a computer system, cause the processor to perform the steps of:

receiving a first set of authentication credentials, wherein the first set of authentication credentials comprise credentials for accessing data on a first operation system (OS) platform, and wherein the first set of authentication credentials comprise either an encrypted user identification (ID) and password or first packaged data generated by a first interface executing on a second OS platform; and

selecting a first authentication process from at least two authentication processes to process the first set of authentication credentials when the received first set of authentication credentials comprises an encrypted user ID and password,

wherein processing the first set of authentication credentials in accordance with the selected first authentication process comprises:

decrypting the encrypted user ID and password;

authenticating the decrypted user ID and password with an authentication and session initiation subsystem (ASIS) executing on the first OS platform; and

storing the authenticated user ID.

8 . The computer program product of claim 7 , wherein the first set of authentication credentials do not comprise credentials for accessing data on the second OS platform.

9 . The computer program product of claim 7 , wherein the medium further comprises instructions which cause the processor to perform the step of selecting a second authentication process from the at least two authentication processes to process the first set of authentication credentials when the received first set of authentication credentials comprises the first packaged data.

10 . The computer program product of claim 9 , wherein processing the first set of authentication credentials in accordance with the selected second authentication process comprises:

authenticating the first packaged data with the ASIS;

transmitting to an application executing on the second OS platform second packaged data generated on the first OS platform;

receiving third packaged data generated by the first interface executing on the second OS platform in response to validation of the second packaged data on the second OS platform;

authenticating the third packaged data with the ASIS; and

storing the authenticated third package data.

11 . The computer program product of claim 7 , wherein the medium further comprises instructions which cause the processor to perform the step of accessing data with a network application executing on the first OS platform using the stored authenticated user ID.

12 . The computer program product of claim 7 , wherein processing the first set of authentication credentials in accordance with the selected first authentication process establishes a secure communication connection between an application executing on the first OS platform and an application executing on the second OS platform.

13 . An apparatus, comprising:

a memory; and

a processor coupled to the memory, wherein the processor is further configured to perform the steps of:

receiving a first set of authentication credentials, wherein the first set of authentication credentials comprise credentials for accessing data on a first operation system (OS) platform, and wherein the first set of authentication credentials comprise either an encrypted user identification (ID) and password or first packaged data generated by a first interface executing on a second OS platform; and

selecting a first authentication process from at least two authentication processes to process the first set of authentication credentials when the received first set of authentication credentials comprises an encrypted user ID and password,

wherein processing the first set of authentication credentials in accordance with the selected first authentication process comprises:

decrypting the encrypted user ID and password;

authenticating the decrypted user ID and password with an authentication and session initiation subsystem (ASIS) executing on the first OS platform; and

storing the authenticated user ID.

14 . The apparatus of claim 13 , wherein the first set of authentication credentials do not comprise credentials for accessing data on the second OS platform.

15 . The apparatus of claim 13 , wherein the processor is further configured to perform the step of selecting a second authentication process from the at least two authentication processes to process the first set of authentication credentials when the received first set of authentication credentials comprises the first packaged data.

16 . The apparatus of claim 15 , wherein processing the first set of authentication credentials in accordance with the selected second authentication process comprises:

authenticating the first packaged data with the ASIS;

transmitting to an application executing on the second OS platform second packaged data generated on the first OS platform;

receiving third packaged data generated by the first interface executing on the second OS platform in response to validation of the second packaged data on the second OS platform;

authenticating the third packaged data with the ASIS; and

storing the authenticated third package data.

17 . The apparatus of claim 13 , wherein the processor is further configured to perform the step of accessing data with a network application executing on the first OS platform using the stored authenticated user ID.

18 . The apparatus of claim 13 , wherein processing the first set of authentication credentials in accordance with the selected first authentication process establishes a secure communication connection between an application executing on the first OS platform and an application executing on the second OS platform.

Assignments (3)
RELEASE OF SECURITY INTEREST Recorded Oct 28, 2020
From: WELLS FARGO BANK, NATIONAL ASSOCIATION
To: UNISYS CORPORATION
Reel/Frame 054231/0496 →
PATENT SECURITY AGREEMENT Recorded Apr 27, 2017
From: UNISYS CORPORATION
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS COLLATERAL TRUSTEE
Reel/Frame 042354/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 25, 2015
From: SMITH, ALLYN D; HALLQUIST, STEVEN R; POLLNOW, WILLIAM O
To: UNISYS CORPORATION
Reel/Frame 036689/0623 →