DATABASE PASSWORD CHANGES
    2.
    发明申请

    公开(公告)号:US20180375645A1

    公开(公告)日:2018-12-27

    申请号:US15630642

    申请日:2017-06-22

    IPC分类号: H04L9/08 G06F17/30 G06F21/41

    摘要: Systems and methods for changing database passwords are described. A first server computing system receives an indication to perform a password change process for an administrative account of an associated database. The server generates a vault configured to store a password change status and a password secret associated with the account. The server sets the password change status to a first value to indicate that the server is performing the password change process and then performs the password change process for the account. The server then sets the password change status to a second value to enable a second server computing system to perform a second password change process for a second administrative account of a database associated with the second server system. The database associated with the second server computing system is a standby database of the database associated with the first server system.

    DISTRIBUTED SINGLE SIGN-ON
    5.
    发明申请

    公开(公告)号:US20180295123A1

    公开(公告)日:2018-10-11

    申请号:US16007393

    申请日:2018-06-13

    摘要: Respective cryptographic shares of password data, dependent on a user password, are provided at n authentication servers. A number t1≤n of the password data shares determine if the user password matches a password attempt. Respective cryptographic shares of secret data, enabling determination of a username for each verifier server, are provided at n authentication servers. A number t2≤t1 of the shares reconstruct the secret data. For a password attempt, the user computer communicates with at least t1 authentication servers to determine if the user password matches the password attempt and, if so, the user computer receives at least t2 secret data shares from respective authentication servers. The user computer uses the secret data to generate, with T≤t1 of said t1 servers, a cryptographic token for authenticating the user computer to a selected verifier server, secret from said at least T servers, under said username.

    DISTRIBUTED SINGLE SIGN-ON
    6.
    发明申请

    公开(公告)号:US20180295122A1

    公开(公告)日:2018-10-11

    申请号:US16007353

    申请日:2018-06-13

    摘要: Respective cryptographic shares of password data, dependent on a user password, are provided at n authentication servers. A number t1≤n of the password data shares determine if the user password matches a password attempt. Respective cryptographic shares of secret data, enabling determination of a username for each verifier server, are provided at n authentication servers. A number t2≤t1 of the shares reconstruct the secret data. For a password attempt, the user computer communicates with at least t1 authentication servers to determine if the user password matches the password attempt and, if so, the user computer receives at least t2 secret data shares from respective authentication servers. The user computer uses the secret data to generate, with T≤t1 of said t1 servers, a cryptographic token for authenticating the user computer to a selected verifier server, secret from said at least T servers, under said username.

    Web-based single sign-on logon manager

    公开(公告)号:US10079820B2

    公开(公告)日:2018-09-18

    申请号:US14493224

    申请日:2014-09-22

    IPC分类号: G06F17/00 H04L29/06 G06F21/41

    摘要: Web-based single sign-on can enable a user to log in to a single interface (such as through a web browser or thin client) and then provide SSO services to the user for one or more web applications. The web-based SSO system can be extended to support one or more different access control methods, such as form-fill, Federated (OIF), SSO Protected (OAM), and other policies. The web-based SSO system can include a user interface through which the user can access different web applications, systems, etc. and manage their credentials. Each SSO service can be associated with a web interface allowing the SSO services to be accessed over the web. The web interfaces can provide CRUD (create, read, update, delete) functionality for each SSO service. To support different access policy types, the web-based SSO system can include an extensible data manager that can manage data access to different types of repositories transparently.

    END USER SOCIAL NETWORK PROTECTION PORTAL
    10.
    发明申请

    公开(公告)号:US20180218157A1

    公开(公告)日:2018-08-02

    申请号:US15883589

    申请日:2018-01-30

    申请人: ZeroFOX, Inc.

    IPC分类号: G06F21/57 G06F21/41 H04L29/06

    摘要: A computer implemented method including generating, by one or more processors, an activation request, receiving, from a user device, an activation confirmation, configuring a protection account specific to the user, where configuring the protection account comprises, identifying one or more of the user's social network accounts, authenticating one or more of the user's social network accounts, and generating a protection portal for the user, providing a link to the protection portal to the user, and providing one or more alerts to the user on the protection portal, wherein the one or more alerts identify security risks associated with one or more of the user's social network accounts.