IP Library Granted Patent US 8,881,248
Granted Patent B2
US 8,881,248 · App. 13/121,015 · Granted Nov 4, 2014

Service provider access

Inventor: Jin Liu (Beijing, CN)
Assignee: Nokia Solutions and Networks Oy
H04L63/0815H04L67/02H04L63/0884H04L67/2804
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,881,248
App. No.
13/121,015
Granted
Nov 4, 2014
Kind
B2
Abstract

A method and apparatus for enabling a user to access a service provider is described. The user sends a request from a browser to a proxy server. The proxy server modifies the request by adding data (such as a URL) relating to a location of an identity provider able to provide user credentials for the user and forwards the modified request to the service provider. The modification of the access request may occur before the request is sent to the service provider or in response to an authentication request from the service provider. The data relating to the location of the identity provider may be provided as a header (e.g. an http header).

Claims (37)

1. A method comprising:

receiving, at a proxy server, a request from a user device for access to a service provider;

modifying, at the proxy server, the request by adding data identifying a location of an identity provider able to provide user credentials for a user of the user device; and

forwarding, from the proxy server, the modified request to the service provider,

wherein the modifying is performed by the proxy server, where the proxy server is different from the user device.

2. A method as claimed in claim 1 , wherein the modifying the request is performed in response to the request for access to the service provider.

3. A method as claimed in claim 1 , wherein the modifying the request is performed in response to the service provider indicating a lack of user authorization.

4. A method as claimed in claim 1 , wherein the data identifying the location of the identity provider added to the request are provided as a header.

5. A method as claimed in claim 1 , wherein the data identifying the location of the identity provider added to the request are provided as a uniform resource locator.

6. A method as claimed in claim 1 , wherein the data identifying the location of the identity provider are provided by the identity provider in response to a request.

7. A method as claimed claim 1 , further comprising:

setting a user identity in response to receiving the request from the user device for access to the service provider.

8. A method as claimed in claim 7 , wherein the user identity is determined based on settings provided by the user device.

9. The method as claimed in claim 1 , further comprising:

receiving at the proxy server a request for authentication in response to the modified request; and

providing user credentials in response to receiving the request for authentication.

10. The method as claimed in claim 1 , wherein the identity provider and the proxy server are co-located with each other.

11. An apparatus comprising:

a first input configured to receive a service access request from a user device; and

a first output configured to send a modified service access request to a service provider,

wherein the apparatus is configured to generate said modified service access request by adding data identifying a location of an identity provider able to provide user credentials for a user of the user device to the service access request received from said user device,

wherein the apparatus is different from the user device, and

wherein said apparatus is a proxy server.

12. An apparatus as claimed in claim 11 , wherein the apparatus is configured to add said data identifying the location of the identity provider on receipt of the service access request from said user device.

13. An apparatus as claimed in claim 11 , further comprising a second input configured to receive signals from said service provider, wherein the apparatus is configured to add said data identifying the location of the identity provider in response to the service provider requesting user authorization.

14. An apparatus as claimed in claim 11 , wherein the data identifying the location of the identity provider is provided as a header.

15. An apparatus as claimed in claim 11 , further comprising the identity provider.

16. A system comprising a service provider and a proxy server, wherein:

the proxy server is configured to receive a service access request from a user device;

the proxy server is configured to modify the request by adding data identifying a location of an identity provider able to provide user credentials for a user of the user device and to send the modified service access request to the service provider;

the service provider is configured to redirect the user device to the identity provider for the purposes of user authentication,

wherein the proxy server is different from the user device.

17. A non-transitory computer-readable medium encoding a computer program product comprising:

an input configured to receive, at a proxy server, a service access request from a user device; and

an output configured to send, from the proxy server, a modified service access request to a service provider,

wherein the computer program product is configured to add data identifying a location of an identity provider able to provide user credentials for a user of the user device to the service access request received from said user device, and

wherein said modified service access request is performed by said proxy server, where said proxy server is different from said user device.

Assignments (9)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 28, 2021
From: PROVENANCE ASSET GROUP LLC
To: RPX CORPORATION
Reel/Frame 059352/0001 →
RELEASE OF SECURITY INTEREST Recorded Nov 30, 2021
From: NOKIA US HOLDINGS INC.
To: PROVENANCE ASSET GROUP HOLDINGS LLC; PROVENANCE ASSET GROUP LLC
Reel/Frame 058363/0723 →
RELEASE OF SECURITY INTEREST Recorded Nov 30, 2021
From: CORTLAND CAPITAL MARKETS SERVICES LLC
To: PROVENANCE ASSET GROUP HOLDINGS LLC; PROVENANCE ASSET GROUP LLC
Reel/Frame 058983/0104 →
ASSIGNMENT AND ASSUMPTION AGREEMENT Recorded Feb 14, 2019
From: NOKIA USA INC.
To: NOKIA US HOLDINGS INC.
Reel/Frame 048370/0682 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 13, 2017
From: NOKIA TECHNOLOGIES OY; NOKIA SOLUTIONS AND NETWORKS BV; ALCATEL LUCENT SAS
To: PROVENANCE ASSET GROUP LLC
Reel/Frame 043877/0001 →
SECURITY INTEREST Recorded Sep 13, 2017
From: PROVENANCE ASSET GROUP HOLDINGS, LLC; PROVENANCE ASSET GROUP LLC
To: NOKIA USA INC.
Reel/Frame 043879/0001 →
SECURITY INTEREST Recorded Sep 13, 2017
From: PROVENANCE ASSET GROUP HOLDINGS, LLC; PROVENANCE ASSET GROUP, LLC
To: CORTLAND CAPITAL MARKET SERVICES, LLC
Reel/Frame 043967/0001 →
CHANGE OF NAME Recorded Nov 19, 2014
From: NOKIA SIEMENS NETWORKS OY
To: NOKIA SOLUTIONS AND NETWORKS OY
Reel/Frame 034294/0603 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 25, 2011
From: LIU, JIN
To: NOKIA SIEMENS NETWORKS OY
Reel/Frame 026023/0770 →
Continuity (1)
Related Publication 20110265155A1 · Oct 27, 2011