- 专利标题: System and method for authenticating client devices communicating with an enterprise system
-
申请号: US17401602申请日: 2021-08-13
-
公开(公告)号: US12015607B2公开(公告)日: 2024-06-18
- 发明人: Christian Joseph Bouffard , Saeed Alhajyousef
- 申请人: The Toronto-Dominion Bank
- 申请人地址: CA Toronto
- 专利权人: The Toronto-Dominion Bank
- 当前专利权人: The Toronto-Dominion Bank
- 当前专利权人地址: CA Toronto
- 代理机构: CPST Intellectual Property Inc.
- 代理商 Brett J. Slaney
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; H04L9/40
摘要:
A system and method are provided for authenticating client devices communicating with an enterprise system. The method includes providing a policy enforcement interceptor to intercept API calls and enabling the policy enforcement interceptor to communicate with a policy information point to query the at least one endpoint for entitlements associated with an account. The method also includes intercepting an API call to the application API, communicating with the policy information point to determine entitlements associated with the account by having the policy information point query an entitlements database and, when the entitlements returned to the policy enforcement interceptor are valid, invoking a policy decision point to validate the client device. The method also includes, when the client device is validated, permitting invocation of the API. The method also includes providing an API response to the client device to permit access to the application via the API.
公开/授权文献
信息查询