Securely sharing log-in credentials among trusted browser-based applications
    1.
    发明授权
    Securely sharing log-in credentials among trusted browser-based applications 有权
    在受信任的基于浏览器的应用程序之间安全地共享登录凭据

    公开(公告)号:US06438600B1

    公开(公告)日:2002-08-20

    申请号:US09240398

    申请日:1999-01-29

    IPC分类号: G06F1516

    CPC分类号: H04L63/0815 H04L63/168

    摘要: A method, system, and computer program for securely sharing log-in credentials among trusted browser-based applications. Credentials for a user are automatically shared only among a restricted and authorized set of trusted applications, without requiring the application developer to write code to manage the credentials. A single log-in is used to obtain the user credentials for a particular codebase, and the credentials are then reused for applications in that codebase. The Java sandbox concept is exploited to provide this restricted sharing, such that the credentials are stored in the shared static data area associated with the server and codebase from which the set of trusted applications was downloaded.

    摘要翻译: 一种用于在受信任的基于浏览器的应用程序之间安全共享登录凭据的方法,系统和计算机程序。 用户的凭据仅在受限和授权的可信应用程序集之间自动共享,而无需应用程序开发人员编写代码来管理凭据。 单一登录用于获取特定代码库的用户凭据,然后凭据重新用于该代码库中的应用程序。 利用Java沙盒概念来提供这种受限制的共享,使得凭据存储在与服务器和代码库相关联的共享静态数据区域中,从这些区域下载可信应用程序集。

    Methods, systems, and computer program products for establishing secured SSL communication sessions
    3.
    发明授权
    Methods, systems, and computer program products for establishing secured SSL communication sessions 失效
    用于建立安全的SSL通信会话的方法,系统和计算机程序产品

    公开(公告)号:US06748528B1

    公开(公告)日:2004-06-08

    申请号:US09386540

    申请日:1999-08-30

    IPC分类号: H04L900

    CPC分类号: H04L63/0823 H04L63/166

    摘要: Methods, systems and computer program products are provided which allow “bootstrapping” of credentials by a client application using the well known certificate authority SSL capabilities of another installed application, such as a browser. A first secured session is established between the client and a server which has a certificate including a digital signature from a well known certificate authority. For example, a hypertext transport protocol over SSL (HTTPS) session may be established to the server by a browser such as Netscape™ or Internet Explorer™. An additional public key, or public key ring is then downloaded from the server to the client which may be subsequently used by the client to establish SSL sessions with servers that do not have a certificate from a well known certificate authority.

    摘要翻译: 提供了方法,系统和计算机程序产品,其允许客户端应用程序使用其他已安装应用程序(如浏览器)的公认的证书颁发机构SSL功能“引导”凭据。 在客户机和具有包括来自众所周知的认证机构的数字签名的证书的服务器之间建立第一安全会话。 例如,通过SSL(HTTPS)会话的超文本传输​​协议可以由诸如Netscape TM或Internet Explorer TM的浏览器建立到服务器。 然后,将另外的公钥或公钥环从服务器下载到客户端,客户端随后可以使用该密钥环来与来自众所周知的认证机构的证书的服务器建立SSL会话。