DYNAMIC VARIANCE MECHANISM FOR SECURING ENTERPRISE RESOURCES USING A VIRTUAL PRIVATE NETWORK

    公开(公告)号:US20210185012A1

    公开(公告)日:2021-06-17

    申请号:US16788325

    申请日:2020-02-12

    申请人: VMWARE, INC.

    IPC分类号: H04L29/06 H04W12/00 G06N20/00

    摘要: Disclosed are various examples for securing enterprise resources using a virtual private network. A client device can send a first unique device identifier for the client device to a remote management service upon enrollment. When a virtual private network application is first executed, the client device can send a second unique device identifier to the remote management service, where the remote management service is configured to store the second unique device identifier in association with the first unique universal identifier. During subsequent executions of the virtual private network application, the virtual private network service can authenticate the client device by comparing the first unique device identifier and the second unique device identifier to a device identifier received from the remote management service. A machine learning routine can be employed to identify anomalies as the virtual private network application is executed.

    Dynamic variance mechanism for securing enterprise resources using a virtual private network

    公开(公告)号:US11418488B2

    公开(公告)日:2022-08-16

    申请号:US16788325

    申请日:2020-02-12

    申请人: VMWARE, INC.

    IPC分类号: H04L9/40 G06N20/00 H04W12/40

    摘要: Disclosed are various examples for securing enterprise resources using a virtual private network. A client device can send a first unique device identifier for the client device to a remote management service upon enrollment. When a virtual private network application is first executed, the client device can send a second unique device identifier to the remote management service, where the remote management service is configured to store the second unique device identifier in association with the first unique universal identifier. During subsequent executions of the virtual private network application, the virtual private network service can authenticate the client device by comparing the first unique device identifier and the second unique device identifier to a device identifier received from the remote management service. A machine learning routine can be employed to identify anomalies as the virtual private network application is executed.

    SINGLE SIGN ON (SSO) CAPABILITY FOR SERVICES ACCESSED THROUGH MESSAGES

    公开(公告)号:US20210203653A1

    公开(公告)日:2021-07-01

    申请号:US16790776

    申请日:2020-02-14

    申请人: VMWARE, INC.

    IPC分类号: H04L29/06 H04L12/24

    摘要: Disclosed are various approaches for facilitating single sign-on (SSO) for third-party services that are accessible through messages (e.g., email) received by a user. A user can receive a message that includes an embedded URL or link that opens in a third-party service that requires authentication. Instead of requiring the user to enter authentication credentials for accessing the third-party service, a tunnel service can be used to intercept requests for authentication and redirect the requests to an identity manager that can issue a SSO token following an authentication of the user and device. Upon supplying the third-party service with the SSO token, the user can access the content associated with the third-party service without entering authentication credentials.

    IDENTIFYING AND DISPLAYING APPLICATION DEPENDENCIES

    公开(公告)号:US20190268306A1

    公开(公告)日:2019-08-29

    申请号:US15904691

    申请日:2018-02-26

    申请人: VMware, Inc.

    摘要: A portal application can receive a listing of available applications in response to a request sent to a management server. The listing can include a plurality of attributes for each available application, such as the requirements for using the features of each application or a dependency upon another application. Based on the plurality of attributes received, the portal application can determine that a first application requires installation of a second application in order for the first application to provide additional functionality. The portal application can display icons corresponding to the available applications and display one or more UI elements, indicating that the first application requires installation of the second application. The portal application can also push the second application to the device and assist in installing and initializing the second application on the device.

    Single sign on (SSO) capability for services accessed through messages

    公开(公告)号:US11516202B2

    公开(公告)日:2022-11-29

    申请号:US16790776

    申请日:2020-02-14

    申请人: VMWARE, INC.

    IPC分类号: H04L29/06 H04L9/40 H04L41/22

    摘要: Disclosed are various approaches for facilitating single sign-on (SSO) for third-party services that are accessible through messages (e.g., email) received by a user. A user can receive a message that includes an embedded URL or link that opens in a third-party service that requires authentication. Instead of requiring the user to enter authentication credentials for accessing the third-party service, a tunnel service can be used to intercept requests for authentication and redirect the requests to an identity manager that can issue a SSO token following an authentication of the user and device. Upon supplying the third-party service with the SSO token, the user can access the content associated with the third-party service without entering authentication credentials.

    Identifying and displaying application dependencies

    公开(公告)号:US10911408B2

    公开(公告)日:2021-02-02

    申请号:US15904691

    申请日:2018-02-26

    申请人: VMware, Inc.

    摘要: A portal application can receive a listing of available applications in response to a request sent to a management server. The listing can include a plurality of attributes for each available application, such as the requirements for using the features of each application or a dependency upon another application. Based on the plurality of attributes received, the portal application can determine that a first application requires installation of a second application in order for the first application to provide additional functionality. The portal application can display icons corresponding to the available applications and display one or more UI elements, indicating that the first application requires installation of the second application. The portal application can also push the second application to the device and assist in installing and initializing the second application on the device.