IP Library Granted Patent US 9,894,072
Granted Patent B2
US 9,894,072 · App. 15/225,751 · Granted Feb 13, 2018

Inter-application management of user credential data

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,894,072
App. No.
15/225,751
Granted
Feb 13, 2018
Kind
B2
Abstract

A system and apparatus for enhancing the functionality and utility of an authentication process for web applications is disclosed.

Claims (19)

1. A method of providing an enhanced authorization application programming interface (API) in a secure network-based system of computing devices each having at least one memory device and one or more hardware computing devices, wherein the enhanced authorization API provides access to at least two authorization procedures one of which utilizes a cookie and one of which utilizes server side-storage, the method comprising:

executing an authorization procedure with at least one of the computing devices, wherein when the cookie is to be used to perform user authorizations, the cookie is sent for authentication purposes to provide re-authentication with each request each time a user makes a request, and wherein when using the server-side storage, the hardware computing device is caused to be configured to not write locally to an application memory, but instead to access a shared session cache memory;

utilizing developer-defined user information (DDUI) within the authorization procedure when performed by at least one of the computing devices, wherein the DDUI comprises at least security credential information from at least two disparate network domains stored as digital data; and

storing the results of a successful authorization procedure in a database as a security context object.

2. The method of claim 1 wherein the security credential information comprises at least one security token.

3. The method of claim 1 , further comprising providing a resource so that the developer can choose between using a cookie, or using server-side storage, for storing the DDUI.

4. The method of claim 1 further comprising providing a mashup of content from the at least two disparate network domains.

5. The method of claim 1 wherein the DDUI further comprises content to be provided to a specific user.

6. The method of claim 1 wherein the security context object comprises a custom database object.

7. The method of claim 6 wherein the custom database object comprises a SecurityContext object.

8. A system comprising:

at least one memory system;

one or more processors coupled with the at least one memory system, the one or more processors configurable to enable an authorization procedure with at least one of the computing devices, wherein the enhanced authorization procedure provides access to at least two authorization procedures one of which utilizes a cookie and one of which utilizes server side-storage, to execute at least one of the authorization procedures utilizing developer-defined user information (DDUI) within the authorization procedure when performed by at least one of the computing devices, wherein the DDUI comprises at least security credential information from at least two disparate network domains stored as digital data, and to store the results of a successful authorization procedure in a database in the memory system as a security context object, wherein when a cookie is to be used to perform user authorizations, the cookie is sent for authentication purposes to provide re-authentication with each request each time a user makes a request, and wherein when using the server-side storage, the one or more processors are to be configured to not write locally to an application memory, but instead to access a shared session cache memory.

9. The system of claim 8 wherein the security credential information comprises at least one security token.

10. The system of claim 8 , the one or more processors are further configurable to provide a resource so that the developer can choose between using a cookie, or using server-side storage, for storing the DDUI.

11. The system of claim 8 further comprising providing a mashup of content from the at least two disparate network domains.

12. The system of claim 8 wherein the DDUI further comprises content to be provided to a specific user.

13. The system of claim 8 wherein the security context object comprises a custom database object.

14. The system of claim 13 wherein the custom database object comprises a SecurityContext object.

Assignments (2)
CHANGE OF NAME Recorded Nov 21, 2024
From: SALESFORCE.COM, INC.
To: SALESFORCE, INC.
Reel/Frame 069431/0012 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 23, 2016
From: SIMONE, JOHN; HOSSAIN, FIAZ
To: SALESFORCE.COM, INC.
Reel/Frame 039514/0022 →