IP Library Granted Patent US 12,001,540
Granted Patent B2
US 12,001,540 · App. 18/349,128 · Granted Jun 4, 2024

Systems and methods for integrating with a native component using a network interface

Inventors: Jonathan Carroll (Beaconsfield, CA); Michel Gagnon (Candiac, CA); Gregory Pekofsky (Dollard-des-Ormeaux, CA); Khanh Tuan Vu (Montreal, CA)
Assignee: OPEN TEXT SA ULC
G06F21/44H04L63/0823
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,001,540
App. No.
18/349,128
Granted
Jun 4, 2024
Kind
B2
Abstract

Embodiments as disclosed herein may provide systems and methods for component integration and security. In particular, in one embodiment, a native component that presents a network based interface may be on a device, where that native component may expose a network based interface for access by other components. This native component can then be accessed through the network based interface. To address security concerns and other issues, the native component may be configured to determine if a received request is associated with the same user space and only respond to requests originating from the same user space.

Claims (44)

1. A system, comprising:

a device comprising:

a first component providing a network interface adapted to allow functionality of the first component to be accessed via the network interface; and

a non-transitory computer readable medium, comprising instructions for:

receiving, at the first component, a request from a requesting second component executing on the device, the request received via the network interface provided by the first component;

determining, by the first component, a first user session identifier associated with the execution of the first component on the device;

determining a connection associated with the request received from the requesting second component;

determining a process identifier associated with the requesting second component based on the determined connection associated with the request;

using the determined first user session identifier and the determined process identifier, determining whether the request originated from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier; and

in response to determining whether the request originated from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier, determining whether to allow the request.

2. The system of claim 1 , wherein if the request originated from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier, allowing the request.

3. The system of claim 2 , wherein the first component is adapted to service the allowed request.

4. The system of claim 3 , wherein the first component is adapted to return a result after servicing the allowed request.

5. The system of claim 1 , wherein if the request did not originate from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier, not allowing the request.

6. The system of claim 1 , wherein the first component is adapted to listen to local ports of the device.

7. The system of claim 6 , wherein the first component is adapted to only accept connection requests from a local host interface.

8. A method, comprising:

receiving, at a network interface of a first component on a device, a request from a requesting component residing locally on the device;

allowing functionality of the first component to be accessed through the network interface;

determining, by the first component, a first user session identifier associated with the execution of the first component on the device;

determining a connection associated with the request received from the requesting component;

determining a process identifier associated with the requesting component based on the determined connection associated with the request;

using the determined first user session identifier and the determined process identifier, determining whether the request originated from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier; and

in response to determining whether the request originated from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier, determining whether to allow the request.

9. The method of claim 8 , wherein if the request originated from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier, allowing the request.

10. The method of claim 9 , wherein the first component is adapted to service the allowed request.

11. The method of claim 10 , wherein the first component is adapted to return a result after servicing the allowed request.

12. The method of claim 8 , wherein if the request did not originate from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier, not allowing the request.

13. The method of claim 8 , wherein the first component is adapted to listen to local ports of the device.

14. The method of claim 13 , wherein the first component is adapted to only accept connection requests from a local host interface.

15. A non-transitory computer readable medium, comprising instructions for:

receiving, at a network interface of a first component on a device, a request from a requesting component residing locally on the device;

allowing functionality of the component to be accessed through the network interface;

determining, by the first component, a first user session identifier associated with the execution of the first component on the device;

determining a connection associated with the request received from the requesting component;

determining a process identifier associated with the requesting component based on the determined connection associated with the request;

using the determined first user session identifier and the determined process identifier, determining whether the request originated from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier; and

in response to determining whether the request originated from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier, determining whether to allow the request.

16. The non-transitory computer readable medium of claim 15 , wherein if the request originated from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier, allowing the request.

17. The non-transitory computer readable medium of claim 15 , wherein the first component is adapted to service the allowed request.

18. The non-transitory computer readable medium of claim 17 , wherein the first component is adapted to return a result after servicing the allowed request.

19. The non-transitory computer readable medium of claim 18 , wherein if the request did not originate from a user space on the first component that is associated with both the determined first user session identifier and the determined process identifier, not allowing the request.

20. The non-transitory computer readable medium of claim 15 , wherein the first component is adapted to listen to local ports of the device.

21. The non-transitory computer readable medium of claim 20 , wherein the first component is adapted to only accept connection requests from a local host interface.

Assignments (5)
NUNC PRO TUNC ASSIGNMENT Recorded Apr 8, 2025
From: OPEN TEXT SA ULC
To: ROCKET SOFTWARE CANADA, INC. (SUCCESSOR BY AMALGAMATION WITH AMC CONNECTIVITY SOFTWARE (CANADA) ULC)
Reel/Frame 070770/0882 →
CERTIFICATE OF AMALGAMATION Recorded Aug 15, 2023
From: IP OT SUB ULC
To: OPEN TEXT SA ULC
Reel/Frame 064593/0743 →
CERTIFICATE OF CONTINUANCE Recorded Aug 15, 2023
From: OT IP SUB, LLC
To: IP OT SUB ULC
Reel/Frame 064593/0748 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 15, 2023
From: CARROLL, JONATHAN; GAGNON, MICHEL; PEKOFSKY, GREGORY; VU, KHANH TUAN
To: OPEN TEXT S.A.
Reel/Frame 064594/0060 →
IP BUSINESS SALE AGREEMENT Recorded Aug 15, 2023
From: OPEN TEXT S.A.
To: OT IP SUB, LLC
Reel/Frame 064597/0697 →
Continuity (6)
Continuation 17493165 · Oct 4, 2021
Continuation 16592460 · Oct 3, 2019
Continuation 16020033 · Jun 27, 2018
Continuation 15000881 · Jan 19, 2016
Provisional Application 62106023 · Jan 21, 2015
Related Publication 20240012900A1 · Jan 11, 2024