IP Library Granted Patent US 11,455,349
Granted Patent B2
US 11,455,349 · App. 16/120,660 · Granted Sep 27, 2022

Security information management for content delivery

Inventors: Artur Bergman (San Francisco, CA); Tyler B. McMullen (San Francisco, CA)
Assignee: Fastly, Inc.
G06F16/951G06F21/10H04L63/0892H04L67/568
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,455,349
App. No.
16/120,660
Granted
Sep 27, 2022
Kind
B2
Abstract

Described herein are methods, systems, and software to handle verification information in a content node. In one example, a method of operating a content node includes receiving a secure content request from an end user device and determining the availability of verification information stored on the content node to service the secure content request. The method further provides, if the verification information is available, verifying the end user device based on the verification information. The method also includes, if the verification information is unavailable, querying an origin server to verify the end user device.

Claims (31)

1. A method of operating a cache server in a content delivery network to support content paywalls, the method comprising:

receiving a content request from an end point for content hosted by an origin server behind a paywall and stored by the cache server;

determining a state of a cookie associated with the content request based at least on verification information stored on the cache server and associated with the end point and at least one previous request for different content; and

in response to determining that the state of the cookie is valid, serving the content to the end point from the cache server.

2. The method of claim 1 , wherein determining the state of the cookie occurs in the cache server.

3. The method of claim 1 , further comprising purging the verification information from the cache server.

4. The method of claim 1 , further comprising purging the verification information from the cache server in response to an expiration of a timer.

5. The method of claim 1 , wherein:

the origin server comprises a website;

the content of the content request comprises media hosted by the website; and

the different content comprises different media hosted by the website.

6. The method of claim 1 , further comprising, after passing the previous verification request to the origin server, receiving the verification information from the origin server and storing the verification information on the cache server.

7. A method of operating a cache server in a content delivery network to support content restrictions, the method comprising:

receiving a content request from an end point for content hosted by an origin server and stored by the cache server, wherein the content request includes security information;

determining if verification information associated with the security information is stored on the cache server from a previous request for different content; and

in response to determining that the verification information is not stored on the cache server, sending a verification request to the origin server.

8. The method of claim 7 , further comprising, after sending the verification request to the origin server, receiving and storing verification information associated with updated security information on the cache server.

9. The method of claim 8 , further comprising sending the updated security information to the end point for use with one or more subsequent requests.

10. The method of claim 9 , further comprising purging the verification information from the cache server.

11. The method of claim 7 , wherein: the security information is a cookie; and the origin server comprises a website.

12. A system comprising:

a means for receiving a content request from an end point for restricted content hosted by an origin server and stored by a cache server;

a means for determining a state of security information associated with the content request based at least on verification information stored on the cache server and associated with the end point and one or more previous requests for different content; and

a means for serving the content to the end point from the cache server in response to determining that the state of the security information is valid.

13. The system of claim 12 , wherein the means for determining the state of the security information is in the cache server.

14. The system of claim 13 , further comprising a means for purging the verification information from the cache server.

15. The system of claim 12 , further comprising a means for purging the verification information from the cache server in response to an expiration of a timer.

16. The system of claim 12 , wherein:

the origin server comprises a website;

the content comprises a content item hosted by the website; and

the different content comprises different content item hosted by the website.

Assignments (2)
SECURITY INTEREST Recorded Feb 17, 2021
From: FASTLY, INC.
To: SILICON VALLEY BANK, AS ADMINISTRATIVE AND COLLATERAL AGENT
Reel/Frame 055316/0616 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 4, 2018
From: BERGMAN, ARTUR; MCMULLEN, TYLER B.
To: FASTLY, INC.
Reel/Frame 046777/0089 →
Continuity (3)
Continuation 14485322 · Sep 12, 2014
Provisional Application 61936440 · Feb 6, 2014
Related Publication 20190073421A1 · Mar 7, 2019