TECHNOLOGIES FOR AUTHENTICATION AND SINGLE-SIGN-ON USING DEVICE SECURITY ASSERTIONS

    公开(公告)号:US20170324731A1

    公开(公告)日:2017-11-09

    申请号:US15660523

    申请日:2017-07-26

    Abstract: Technologies for remote device authentication include a client computing device, an identity provider, and an application server in communication over a network. The identity provider sends an authentication challenge to the client. A capability proxy of the client intercepts an authentication challenge response and retrieves one or more security assertions from a secure environment of the client computing device. The capability proxy may be an embedded web server providing an HTTP interface to platform features of the client. The client sends a resource access token based on the security assertions to the identity provider. The identity provider verifies the resource access token and authenticates the client computing device based on the resource access token in addition to user authentication factors such as username and password. The identity provider sends an authentication response to the client, which forwards the authentication response to the application server. Other embodiments are described and claimed.

    TECHNIQUES FOR PROVIDING SOFTWARE SUPPORT FOR A HARDWARE COMPONENT OF A COMPUTING DEVICE
    2.
    发明申请
    TECHNIQUES FOR PROVIDING SOFTWARE SUPPORT FOR A HARDWARE COMPONENT OF A COMPUTING DEVICE 有权
    为计算机硬件组件提供软件支持的技术

    公开(公告)号:US20160191333A1

    公开(公告)日:2016-06-30

    申请号:US14583305

    申请日:2014-12-26

    CPC classification number: H04L63/0861 G06F21/85

    Abstract: Various embodiments are generally directed to techniques to provide software support for a hardware component incorporated into a computing device with a variety of processor components supporting different instruction sets and with a variety of operating systems. An apparatus may include a main processor component of a computing device; a network device simulator coupled to a hardware component of the computing device, and to provide a simulated network device; and a bus network interface controller (NIC) simulator to provide a simulated bus NIC, the bus NIC simulator and the network device simulator to present the hardware component to the main processor component as the simulated network device accessible to the main processor component through at least the simulated bus NIC and a simulated network that couples the simulated bus NIC to the simulated network device. Other embodiments are described and claimed.

    Abstract translation: 各种实施例通常涉及为包含支持不同指令集和各种操作系统的各种处理器组件的计算装置中的硬件组件提供软件支持的技术。 设备可以包括计算设备的主处理器组件; 耦合到计算设备的硬件组件的网络设备模拟器,并提供模拟网络设备; 以及总线网络接口控制器(NIC)模拟器,以提供模拟总线NIC,总线NIC模拟器和网络设备模拟器,以将硬件组件呈现给主处理器组件,作为主处理器组件可访问的模拟网络设备,至少 模拟总线NIC和将模拟总线NIC耦合到仿真网络设备的模拟网络。 描述和要求保护其他实施例。

    Method and system of secured direct link set-up (DLS) for wireless networks

    公开(公告)号:US11233633B2

    公开(公告)日:2022-01-25

    申请号:US16188848

    申请日:2018-11-13

    Abstract: Method and system of secured direct link set-up (DLS) for wireless networks. In accordance with aspects of the method, techniques are disclosed for setting up computationally secure direct links between stations in a wireless network in a manner that is computationally secure. A direct link comprising a new communication session is set up between first and second stations in a wireless local area network (WLAN) hosted by an access point (AP), the direct link comprising a new communication session. The AP generates a unique session key for the new communication session and transfers secured copies of the session key to each of the first and second stations in a manner under which only the first and second stations can obtain the session key. A security mechanism is then implemented on the unsecured direct link to secure the direct link between the first and second stations using a secure session key derived from the session key.

    Technologies for authentication and single-sign-on using device security assertions

    公开(公告)号:US09749310B2

    公开(公告)日:2017-08-29

    申请号:US14670955

    申请日:2015-03-27

    CPC classification number: H04L63/0815 G06F21/41 G06F21/44 H04L63/10 H04L67/02

    Abstract: Technologies for remote device authentication include a client computing device, an identity provider, and an application server in communication over a network. The identity provider sends an authentication challenge to the client. A capability proxy of the client intercepts an authentication challenge response and retrieves one or more security assertions from a secure environment of the client computing device. The capability proxy may be an embedded web server providing an HTTP interface to platform features of the client. The client sends a resource access token based on the security assertions to the identity provider. The identity provider verifies the resource access token and authenticates the client computing device based on the resource access token in addition to user authentication factors such as username and password. The identity provider sends an authentication response to the client, which forwards the authentication response to the application server. Other embodiments are described and claimed.

    Technologies for authentication and single-sign-on using device security assertions

    公开(公告)号:US10462121B2

    公开(公告)日:2019-10-29

    申请号:US15660523

    申请日:2017-07-26

    Abstract: Technologies for remote device authentication include a client computing device, an identity provider, and an application server in communication over a network. The identity provider sends an authentication challenge to the client. A capability proxy of the client intercepts an authentication challenge response and retrieves one or more security assertions from a secure environment of the client computing device. The capability proxy may be an embedded web server providing an HTTP interface to platform features of the client. The client sends a resource access token based on the security assertions to the identity provider. The identity provider verifies the resource access token and authenticates the client computing device based on the resource access token in addition to user authentication factors such as username and password. The identity provider sends an authentication response to the client, which forwards the authentication response to the application server. Other embodiments are described and claimed.

    Hardware resource access systems and techniques

    公开(公告)号:US10334056B2

    公开(公告)日:2019-06-25

    申请号:US15698575

    申请日:2017-09-07

    Abstract: Systems and techniques for hardware resource access are disclosed herein. In some embodiments, an apparatus may receive, via a stateless protocol message, a request from an application to pair with a hardware resource of a computing device remote from the apparatus. The apparatus may provide to the computing device, via a stateless protocol message, identifiers of the application and the hardware resource, and may receive, via a stateless protocol message, pairing approval from the computing device. In response to receiving the pairing approval, the apparatus may generate a pairing token that may be used by the application to pair the application with the hardware resource. Other embodiments may be disclosed and/or claimed.

Patent Agency Ranking