IP Library Granted Patent US 9,444,813
Granted Patent B1
US 9,444,813 · App. 14/822,370 · Granted Sep 13, 2016

Token-based security for remote resources

Inventors: Michael Dean Talvensaari (Los Gatos, CA); Ian Zenoni (Highlands Ranch, CO)
Assignee: WOWZA MEDIA SYSTEMS, LLC
H04L63/0838H04L41/0816H04L63/168
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,444,813
App. No.
14/822,370
Granted
Sep 13, 2016
Kind
B1
Abstract

Systems and methods of token-based protection for remote resources are disclosed. For example, a method may include receiving, at a second computing device, a configuration message from a first computing device. The configuration message includes information to configure a resource at the second computing device. For example, the resource may be a cloud transcoder. The method also includes generating, at the second computing device, a short token that enables the first computing device to access the resource. For example, the short token may be used to receive a long token that can be used to send application programming interface (API) requests to the cloud transcoder.

Claims (39)

1. A method comprising:

receiving, at a second computing device, a configuration message from a first computing device, the configuration message including information to configure a resource at the second computing device;

generating, at the second computing device, a short token that enables the first computing device to access the resource; and

generating, at the second computing device, a long token that enables the first computing device to access an application programming interface (API) supported by the second computing device, wherein the short token and the long token are sent from the second computing device to the first computing device.

2. The method of claim 1 , wherein the resource comprises a transcoder.

3. The method of claim 1 , wherein the long token is longer than the short token.

4. The method of claim 3 , further comprising:

sending the short token from the second computing device to the first computing device as a first connection code;

receiving a second connection code from the first computing device; and

sending the long token to the first computing device upon verification that the second connection code matches the first connection code.

5. The method of claim 1 , wherein the short token expires a particular time period after being generated.

6. The method of claim 5 , wherein the particular time period is twenty-four hours.

7. The method of claim 1 , wherein the short token includes eight or fewer alphanumeric characters and the long token includes at least thirty-two characters.

8. The method of claim 1 , wherein the first computing device includes a media server, wherein the second computing device includes a cloud-based server, and wherein the resource comprises a cloud computing resource.

9. The method of claim 1 , wherein the first computing device is associated with a capture source, wherein the second computing device includes a cloud-based server, and wherein the resource comprises a cloud computing resource.

10. The method of claim 1 , wherein the first computing device is associated with a capture source, wherein the second computing device includes a media server, and wherein the resource is provided by the media server.

11. An apparatus comprising:

a processor; and

a memory storing instructions executable by the processor to perform operations comprising:

receiving a configuration message from a first computing device, the configuration message including information to configure a resource at a second computing device;

generating, at the second computing device, a short token that enables the first computing device to access the resource; and

generating, at the second computing device, a long token that enables the first computing device to access an application programming interface (API) supported by the second computing device, wherein the second computing device is configured to send the short token and the long token to the first computing device.

12. The apparatus of claim 11 , wherein the operations further comprise:

receiving a message from the first computing device, wherein the message includes the short token; and

sending the long token to the first computing device in response to receiving the short token in the message, wherein the long token is longer than the short token.

13. The apparatus of claim 12 , wherein the operations further comprise

processing an API request in response to determining that the API request includes the long token and that the long token is valid.

14. The apparatus of claim 13 , wherein the message, the API request, or both are a hypertext transfer protocol (HTTP) secure (HTTPS) message.

15. The apparatus of claim 14 , wherein the HTTPS message corresponds to a POST command, a PUT command, or a GET command.

16. The apparatus of claim 13 , wherein the resource comprises a transcoder and wherein the API request is configured to retrieve characteristics of the transcoder, retrieve a status of the transcoder, start the transcoder, stop the transcoder, reset the transcoder, or any combination thereof.

17. A non-transitory computer-readable medium comprising instructions that, when executed by a processor, cause the processor to perform operations comprising:

receiving, at a second computing device, a configuration message from a first computing device, the configuration message including information to configure a resource at the second computing device;

generating, at the second computing device, a short token that enables the first computing device to access the resource;

generating, at the second computing device, a long token that enables the first computing device to access an application programming interface (API) supported by the second computing device, wherein the short token and the long token are sent from the second computing device to the first computing device.

18. The non-transitory computer-readable medium of claim 17 , wherein the long token is longer than the short token.

19. The non-transitory computer-readable medium of claim 18 , wherein the operations further comprise:

sending the short token from the second computing device the first computing device as a first connection code;

receiving a second connection code from the first computing device; and

sending the long token to the first computing device upon verification that the second connection code matches the first connection code.

Assignments (2)
SECURITY INTEREST Recorded May 28, 2021
From: WOWZA MEDIA SYSTEMS, LLC
To: SILICON VALLEY BANK, AS ADMINISTRATIVE AGENT
Reel/Frame 056422/0263 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 10, 2015
From: TALVENSAARI, MICHAEL DEAN; ZENONI, IAN
To: WOWZA MEDIA SYSTEMS, LLC
Reel/Frame 036291/0601 →
Continuity (1)
Continuation 14630334 · Feb 24, 2015