IP Library Granted Patent US 9,794,255
Granted Patent B2
US 9,794,255 · App. 14/504,524 · Granted Oct 17, 2017

Communication terminal and communication processing method

Inventors: Daisuke Yamashita (Kawasaki, JP); Masahide Noda (Kawasaki, JP); Junichi Yura (Yokohama, JP); Hideto Kihara (Kawasaki, JP); Takashi Ohno (Kobe, JP)
Assignee: FUJITSU LIMITED
H04L63/0884H04L63/08H04L63/0815H04L63/101H04W12/06G06F21/44
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,794,255
App. No.
14/504,524
Granted
Oct 17, 2017
Kind
B2
Abstract

A processor stores authentication information managed by a native environment of the communication terminal in a first storage region of the storage device. The processor stores authentication information of an application to be executed on a Web application execution environment of the communication terminal in a second storage region of the storage device. The processor performs a control to write the authentication information stored in the first storage region to the second storage region when authentication information used by the application is not stored in the second storage region and is stored in the first storage region.

Claims (24)

1. A communication terminal comprising:

a storage device having a first storage region and a second storage region; and

a processor configured to execute a process when a Web application issues an authentication request, the process including

receiving the authentication request,

determining whether the Web application is authorized to use application authentication information and whether application authentication information, used by the Web application executed on a Web application execution environment of the communication terminal, is stored in the first storage region and is not stored in the second storage region, and

when said determining is affirmative, writing first authentication information, managed by a native environment of the communication terminal and stored in the first storage region, to the second storage region as second authentication information,

wherein the Web application applies the second authentication information in accessing a service.

2. The communication terminal according to claim 1 , wherein, the processor performs proxy authentication of the application when the application issues a request related to authentication.

3. The communication terminal according to claim 1 , wherein, the processor determines whether to write the first authentication information to the second storage region based on an authorization list indicating an application authorized to use the application authentication information.

4. The communication terminal according to claim 1 , wherein, the processor determines whether to write the first authentication information to the second region based on a forbidden list indicating a function that is provided by an operating system of the communication terminal and that the application is forbidden from using.

5. The communication terminal according to claim 3 , wherein

the authorization list includes, for each application, information indicating whether to perform authentication again, and

the processor performs authentication when the information indicates that authentication is to be performed again.

6. The communication terminal according to claim 2 , wherein the processor performs the proxy authentication of the application under a region of the native environment.

7. A communication processing method, comprising:

receiving, by a processor, an authentication request from a Web application executed on a Web application execution environment of a communication terminal;

determining, by the processor in response to issuance of the authentication request by the Web application, whether the Web application is authorized to use application authentication information and whether the application authentication information used by the Web application is stored in a first storage region and is not stored in a second storage region;

writing first authentication information, managed by a native environment of the communication terminal and stored in the first storage region, to the second storage region as second authentication information, when said determining is affirmative; and

accessing a service by the Web application by reference to the second authentication information.

8. A non-transitory computer-readable recording medium having stored therein a program for causing a computer to execute a process comprising:

receiving an authentication request from a Web application executed on a Web application execution environment of a communication terminal;

determining, in response to issuance of the authentication request by the Web application, whether the Web application is authorized to use application authentication information and whether the application authentication information used by the Web application is stored in a first storage region and is not stored in a second storage region;

writing first authentication information, managed by a native environment of the communication terminal and stored in the first storage region, to the second storage region as second authentication information, when said determining is affirmative; and

accessing a service by the Web application by reference to the second authentication information.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 3, 2014
From: YAMASHITA, DAISUKE; NODA, MASAHIDE; YURA, JUNICHI; KIHARA, HIDETO; OHNO, TAKASHI
To: FUJITSU LIMITED
Reel/Frame 033878/0198 →
Priority Claims (1)
JP 2013-212851 · Oct 10, 2013 · national
Continuity (1)
Related Publication 20150106904A1 · Apr 16, 2015