Invention Grant
- Patent Title: Application-specific session authentication
-
Application No.: US15927786Application Date: 2018-03-21
-
Publication No.: US10587697B2Publication Date: 2020-03-10
- Inventor: Benjamin Drasin , Jacob Roussel
- Applicant: salesforce.com, inc.
- Applicant Address: US CA San Francisco
- Assignee: salesforce.com, inc.
- Current Assignee: salesforce.com, inc.
- Current Assignee Address: US CA San Francisco
- Agency: Holland & Hart LLP
- Main IPC: H04L29/08
- IPC: H04L29/08

Abstract:
Methods, systems, and devices for application-specific session authentication are described. In some systems, a host server may authenticate a single-page application utilizing token-based verification. For example, a user device running the single-page application embedded within a container webpage may transmit a resource request including a session-identifying token to the host server. The host server may identify whether the session-identifying token is included in the resource request from the single-page application in order to determine whether to grant resource access for the request. If the request includes the token, the host server may determine that the request is from the single-page application, and may transmit the requested resources to the user device to load or update the embedded application. Using the token-based scheme, the host server may grant access to requests from the specific application, while restricting resource access to any requests received from other entities of the user device.
Public/Granted literature
- US20190297147A1 APPLICATION-SPECIFIC SESSION AUTHENTICATION Public/Granted day:2019-09-26
Information query