- 专利标题: Session-centric access control for secure ephemeral shells
-
申请号: US17349630申请日: 2021-06-16
-
公开(公告)号: US11824860B2公开(公告)日: 2023-11-21
- 发明人: John Ezra-Razi Jawed
- 申请人: eBay Inc.
- 申请人地址: US CA San Jose
- 专利权人: eBay Inc.
- 当前专利权人: eBay Inc.
- 当前专利权人地址: US CA San Jose
- 代理机构: SHOOK, HARDY & BACON L.L.P.
- 主分类号: H04L9/40
- IPC分类号: H04L9/40 ; H04L9/32 ; G06F21/45
摘要:
Technologies are shown for session centric access control of a remote connection that involve receiving a connection request, redirecting the request to a trusted authority, and receiving a redirection of the request along with a profile or role determined for the client. A container is created for a remote connection with a certificate and a public key along with an identifier for each endpoint authorized in association with the profile or role determined for the client. Single use credentials are created and a secure shell initialized for the remote connection using the credentials, certificate and public key. The secure shell is presented to the client and the credentials expired. When an access request for an endpoint is received via the shell, it is determined whether an identifier corresponding to the requested endpoint is stored in the container for the shell and, if so, access is allowed to the requested endpoint.
公开/授权文献
信息查询