-
公开(公告)号:US11128666B2
公开(公告)日:2021-09-21
申请号:US16134542
申请日:2018-09-18
Applicant: VMware, Inc.
Inventor: Simon Brooks , Daniel E. Zeck , Xinpi Du , Ali Mohsin , Kishore Sajja , Nikhil Mehta
Abstract: Examples for detecting a compromised device are described. A set of threat detection rules can instruct an application on the client device how to detect whether the client device is compromised. The rules can be updated dynamically and without updating the application that is performing the compromise detection. The rules can be encoded in an interpreted scripting language and executed by a runtime environment that is embedded within the application.
-
公开(公告)号:US20210084025A1
公开(公告)日:2021-03-18
申请号:US17106739
申请日:2020-11-30
Applicant: VMware, Inc.
Inventor: David Shaw , Daniel E. Zeck , Robert Worsnop
Abstract: Disclosed are various approaches for polling federated services for notifications. A request for an access token for a federated service is sent to an authentication service. The access token for the federated service is received from the authentication service. A query is sent to the federated service for a notification, the query comprising the access token. The notification is received from the federated service.
-
公开(公告)号:US10855669B2
公开(公告)日:2020-12-01
申请号:US15970020
申请日:2018-05-03
Applicant: VMware, Inc.
Inventor: David Shaw , Daniel E. Zeck , Robert Worsnop
Abstract: Disclosed are various approaches for relaying and caching authentication credentials. A single sign-on (SSO) token is received, the SSO token representing a user account authenticated with an identity manager. An authentication request is then sent to a service that is federated with the identity manager in response to receipt of the SSO token, the authentication request including the SSO token. An access token is received in response to the authentication request, the access token providing access to the service for the user account authenticated with the identity manager for a predefined period of time. The access token and a link between the access token and the SSO token are then cached.
-
公开(公告)号:US20190342280A1
公开(公告)日:2019-11-07
申请号:US15970020
申请日:2018-05-03
Applicant: VMware, Inc.
Inventor: David Shaw , Daniel E. Zeck , Robert Worsnop
Abstract: Disclosed are various approaches for relaying and caching authentication credentials. A single sign-on (SSO) token is received, the SSO token representing a user account authenticated with an identity manager. An authentication request is then sent to a service that is federated with the identity manager in response to receipt of the SSO token, the authentication request including the SSO token. An access token is received in response to the authentication request, the access token providing access to the service for the user account authenticated with the identity manager for a predefined period of time. The access token and a link between the access token and the SSO token are then cached.
-
公开(公告)号:US20220141209A1
公开(公告)日:2022-05-05
申请号:US17580759
申请日:2022-01-21
Applicant: VMware, Inc.
Inventor: Daniel E. Zeck , David Shaw , Robert Worsnop , John Ryan Bard
IPC: H04L9/40 , H04L67/51 , G06F3/04817 , G06F3/0482
Abstract: Disclosed are various approaches for workflow service back end integration. In some examples, a workflow service identifies a workflow action and a user account that is responsible for the workflow action. A command to present the workflow action for user authorization is transmitted to a client device associated with the user account. The workflow service transmits a command to perform the workflow action based on an identification of the user authorization.
-
公开(公告)号:US20200314086A1
公开(公告)日:2020-10-01
申请号:US16369492
申请日:2019-03-29
Applicant: VMware, Inc.
Inventor: Daniel E. Zeck , David Shaw , Robert Worsnop , John Ryan Bard
IPC: H04L29/06 , H04L29/08 , G06F3/0482 , G06F3/0481
Abstract: Disclosed are various approaches for workflow service back end integration. In some examples, a service request is identified. The service request is associated with a network service. A single sign-on (SSO) token is received. The SSO token represents a user account authenticated with an identity manager. Authentication data for the network service is identified based on the SSO token. A hosting location of a connector for the network service is identified based on the authentication data. An authentication header is appended to the service request. The service request with the authentication header is transmitted to the connector.
-
公开(公告)号:US20200314085A1
公开(公告)日:2020-10-01
申请号:US16369480
申请日:2019-03-29
Applicant: VMware, Inc.
Inventor: Daniel E. Zeck , David Shaw , Robert Worsnop , John Ryan Bard
IPC: H04L29/06
Abstract: Disclosed are various approaches for workflow service back end integration. In some examples, a data request is received. The request is associated with a network service. A single sign-on (SSO) token is received. The SSO token represents a user account authenticated with an identity manager. Authentication data for the network service is identified based on the SSO token. The authentication data can specify an authentication site of the network service. A navigation action is automatically performed on the authentication site. The requested data is received. A command to present on a client device the data is transmitted to the client device.
-
公开(公告)号:US20200153697A1
公开(公告)日:2020-05-14
申请号:US16190524
申请日:2018-11-14
Applicant: VMware, Inc.
Inventor: Stephen Turner , Daniel E. Zeck , Simon Brooks
Abstract: Disclosed are various examples for Internet of Things (IoT) device discovery and deployment. In some embodiments, a device identifier is received from an IoT device. The IoT device is determined, based on the device identifier, to be associated with a device account with a management service. An enrollment of the IoT device is performed. A capabilities declaration is received from the IoT device. IoT device instructions are determined based on the capabilities declaration. IoT device instructions are transmitted to the IoT device, causing it to perform a capability specified in the capabilities declaration.
-
公开(公告)号:US20190342281A1
公开(公告)日:2019-11-07
申请号:US15970026
申请日:2018-05-03
Applicant: VMware, Inc.
Inventor: David Shaw , Daniel E. Zeck , Robert Worsnop
Abstract: Disclosed are various approaches for polling federated services for notifications. A request for an access token for a federated service is sent to an authentication service. The access token for the federated service is received from the authentication service. A query is sent to the federated service for a notification, the query comprising the access token. The notification is received from the federated service.
-
公开(公告)号:US11722476B2
公开(公告)日:2023-08-08
申请号:US17452121
申请日:2021-10-25
Applicant: VMware, Inc.
Inventor: Daniel E. Zeck , David Shaw , Robert Worsnop , John Ryan Bard
IPC: H04L9/40 , H04L67/00 , G06F3/0482 , G06F3/04817 , H04L67/51
CPC classification number: H04L63/0815 , G06F3/0482 , G06F3/04817 , H04L63/166 , H04L67/34 , H04L67/51
Abstract: Disclosed are various approaches for workflow service back end integration. In some examples, a hosting location is identified for a connector that handles communications with a network service. Authentication information that is selected based on the hosting location of the connector is appended to a service request. The authentication information includes a service credential that the connector uses to authenticate with the network service, if the connector is hosted locally to the workflow service. The authentication information includes instructions for the connector to retrieve the service credential from an enterprise-hosted data store, if the connector is hosted external to the workflow service. The service request is then transmitted with the selected authentication information.
-
-
-
-
-
-
-
-
-