CA2341213C - Systeme et procede permettant l'acces securise a des services dans un reseau informatique - Google Patents

Systeme et procede permettant l'acces securise a des services dans un reseau informatique Download PDF

Info

Publication number
CA2341213C
CA2341213C CA002341213A CA2341213A CA2341213C CA 2341213 C CA2341213 C CA 2341213C CA 002341213 A CA002341213 A CA 002341213A CA 2341213 A CA2341213 A CA 2341213A CA 2341213 C CA2341213 C CA 2341213C
Authority
CA
Canada
Prior art keywords
client
service
user
services
engine
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Lifetime
Application number
CA002341213A
Other languages
English (en)
Other versions
CA2341213A1 (fr
Inventor
Mark D. Riggins
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
BlackBerry Ltd
Original Assignee
Visto Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Visto Corp filed Critical Visto Corp
Publication of CA2341213A1 publication Critical patent/CA2341213A1/fr
Application granted granted Critical
Publication of CA2341213C publication Critical patent/CA2341213C/fr
Anticipated expiration legal-status Critical
Expired - Lifetime legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/34Network arrangements or protocols for supporting network services or applications involving the movement of software or configuration parameters 
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/029Firewall traversal, e.g. tunnelling or, creating pinholes
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0823Network architectures or network communication protocols for network security for authentication of entities using certificates
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/105Multiple levels of security
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/16Implementing security features at a particular protocol layer
    • H04L63/168Implementing security features at a particular protocol layer above the transport layer

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer And Data Communications (AREA)
  • Storage Device Security (AREA)

Abstract

Un serveur global (106) comprend un moteur de communications permettant d'établir une liaison de communications avec un client (114a), des moyens de sécurisation accouplés au moteur de communications, chargés d'évaluer les privilèges des clients, un moteur hôte mini-serveur accouplé aux moyens de sécurisation pour fournir au client (114a), sur la base des privilèges accordés au client, une mini-application autorisant I/O avec un service sécurisé, et une sécurité de clé pour la mémorisation d'une clé autorisant l'accès au service sécurisé. Le serveur global peut être couplé à des sites multiples, chaque site fournissant des services multiples. Chaque site peut être protégé par un coupe-feu (116). En conséquence, le serveur global mémorise les clés pour autoriser la communication, via les coupe-feu (116), avec les services (110a).
CA002341213A 1998-08-21 1998-08-21 Systeme et procede permettant l'acces securise a des services dans un reseau informatique Expired - Lifetime CA2341213C (fr)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/US1998/017410 WO2000011832A1 (fr) 1998-08-21 1998-08-21 Systeme et procede permettant l'acces securise a des services dans un reseau informatique

Publications (2)

Publication Number Publication Date
CA2341213A1 CA2341213A1 (fr) 2000-03-02
CA2341213C true CA2341213C (fr) 2009-05-26

Family

ID=22267718

Family Applications (1)

Application Number Title Priority Date Filing Date
CA002341213A Expired - Lifetime CA2341213C (fr) 1998-08-21 1998-08-21 Systeme et procede permettant l'acces securise a des services dans un reseau informatique

Country Status (7)

Country Link
EP (1) EP1105996A4 (fr)
JP (1) JP2002523973A (fr)
CN (1) CN1227858C (fr)
CA (1) CA2341213C (fr)
EA (1) EA003374B1 (fr)
IL (1) IL141530A0 (fr)
WO (1) WO2000011832A1 (fr)

Families Citing this family (56)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6219694B1 (en) 1998-05-29 2001-04-17 Research In Motion Limited System and method for pushing information from a host system to a mobile data communication device having a shared electronic address
US6701438B1 (en) * 1999-06-14 2004-03-02 Sun Microsystems, Inc. Methods and apparatus for providing customizable security and logging protocols in a servlet engine
US8793374B2 (en) 1999-12-02 2014-07-29 Western Digital Technologies, Inc. Managed peer-to-peer applications, systems and methods for distributed data access and storage
US7120692B2 (en) 1999-12-02 2006-10-10 Senvid, Inc. Access and control system for network-enabled devices
ATE396577T1 (de) 1999-12-02 2008-06-15 Western Digital Tech Inc System zum fernaufnehmen von fernsehprogrammen
US9191443B2 (en) 1999-12-02 2015-11-17 Western Digital Technologies, Inc. Managed peer-to-peer applications, systems and methods for distributed data access and storage
US7934251B2 (en) 1999-12-02 2011-04-26 Western Digital Technologies, Inc. Managed peer-to-peer applications, systems and methods for distributed data access and storage
US6671757B1 (en) 2000-01-26 2003-12-30 Fusionone, Inc. Data transfer and synchronization system
US6694336B1 (en) * 2000-01-25 2004-02-17 Fusionone, Inc. Data transfer and synchronization system
US6631417B1 (en) * 2000-03-29 2003-10-07 Iona Technologies Plc Methods and apparatus for securing access to a computer
JP2001283062A (ja) * 2000-04-03 2001-10-12 Cybozu Inc グループウェアを用いた電子取引システム
US7814208B2 (en) * 2000-04-11 2010-10-12 Science Applications International Corporation System and method for projecting content beyond firewalls
US7181542B2 (en) * 2000-04-12 2007-02-20 Corente, Inc. Method and system for managing and configuring virtual private networks
US6996628B2 (en) 2000-04-12 2006-02-07 Corente, Inc. Methods and systems for managing virtual addresses for virtual networks
US7028333B2 (en) 2000-04-12 2006-04-11 Corente, Inc. Methods and systems for partners in virtual networks
US7047424B2 (en) 2000-04-12 2006-05-16 Corente, Inc. Methods and systems for hairpins in virtual networks
US7181766B2 (en) 2000-04-12 2007-02-20 Corente, Inc. Methods and system for providing network services using at least one processor interfacing a base network
US6944651B2 (en) 2000-05-19 2005-09-13 Fusionone, Inc. Single click synchronization of data from a public information store to a private information store
EP1158745B1 (fr) * 2000-05-26 2003-09-03 International Business Machines Corporation Méthode et système avec accès universel et sécurisé
US6859879B2 (en) 2000-05-26 2005-02-22 International Business Machine Corporation Method and system for secure pervasive access
US6925476B1 (en) 2000-08-17 2005-08-02 Fusionone, Inc. Updating application data including adding first change log to aggreagate change log comprising summary of changes
BR0113510A (pt) 2000-08-25 2003-07-01 Research In Motion Ltd Sistema e método para implementar um protocolo de segurança de camada de transporte aprimorado
US7774455B1 (en) 2000-09-26 2010-08-10 Juniper Networks, Inc. Method and system for providing secure access to private networks
US7085817B1 (en) 2000-09-26 2006-08-01 Juniper Networks, Inc. Method and system for modifying requests for remote resources
US7865569B1 (en) 2000-09-26 2011-01-04 Juniper Networks, Inc. Method and system for modifying script portions of requests for remote resources
US7136896B1 (en) 2000-09-26 2006-11-14 Juniper Networks, Inc. Dynamic toolbar for markup language document
JP3297037B2 (ja) * 2000-10-31 2002-07-02 サイボウズ株式会社 情報登録支援システム、情報登録支援装置並びに方法、及び情報記憶媒体
WO2002052798A2 (fr) 2000-12-22 2002-07-04 Research In Motion Limited Systeme de routeur sans fil et procede
US7533409B2 (en) 2001-03-22 2009-05-12 Corente, Inc. Methods and systems for firewalling virtual private networks
EP1249981A1 (fr) * 2001-04-02 2002-10-16 NuMeme Limited Système et procédé pour système de surveillance de sécurité
US7317699B2 (en) 2001-10-26 2008-01-08 Research In Motion Limited System and method for controlling configuration settings for mobile communication devices and services
US9332058B2 (en) 2001-11-01 2016-05-03 Benhov Gmbh, Llc Local agent for remote file access system
US7146403B2 (en) 2001-11-02 2006-12-05 Juniper Networks, Inc. Dual authentication of a requestor using a mail server and an authentication server
US7631084B2 (en) 2001-11-02 2009-12-08 Juniper Networks, Inc. Method and system for providing secure access to private networks with client redirection
WO2003041360A2 (fr) 2001-11-02 2003-05-15 Neoteris, Inc. Procede et systeme assurant un acces sur a des ressources de reseaux prives
EP1777912B1 (fr) * 2001-11-02 2018-08-15 Juniper Networks, Inc. Procédé et système permettant un accès sécurisé aux ressources des réseaux privés
WO2003044676A1 (fr) * 2001-11-20 2003-05-30 Senvid, Inc. Systeme d'acces et de commande pour dispositifs actives par reseau
US7107341B2 (en) 2001-12-07 2006-09-12 Research In Motion Limited System and method of managing information distribution to mobile stations
US7395354B2 (en) 2002-02-21 2008-07-01 Corente, Inc. Methods and systems for resolving addressing conflicts based on tunnel information
EP1532539B1 (fr) 2002-06-06 2015-12-09 Pulse Secure, LLC Procede et systeme donnant un acces sur a des reseaux prives
AU2003250405A1 (en) * 2002-08-19 2004-03-03 Axalto Sa Secured method to exchange data between a browser and a web site
US8473355B2 (en) 2002-12-06 2013-06-25 Facebook, Inc. System and method for electronic wallet conversion
EP1652048A4 (fr) 2003-07-21 2009-04-15 Fusionone Inc Systeme de gestion de messages de dispositifs
CN1298194C (zh) * 2004-03-22 2007-01-31 西安电子科技大学 基于漫游密钥交换认证协议的无线局域网安全接入方法
US9542076B1 (en) 2004-05-12 2017-01-10 Synchronoss Technologies, Inc. System for and method of updating a personal profile
US7814216B2 (en) * 2004-09-07 2010-10-12 Route 1 Inc. System and method for accessing host computer via remote computer
EP3654586B1 (fr) 2005-04-18 2021-11-24 BlackBerry Limited Procédé pour fournir une gestion de privilèges d'applications sans fil
US7748046B2 (en) 2005-04-29 2010-06-29 Microsoft Corporation Security claim transformation with intermediate claims
US8135798B2 (en) 2006-11-15 2012-03-13 Hewlett-Packard Development Company, L.P. Over-the-air device services and management
US20080115152A1 (en) 2006-11-15 2008-05-15 Bharat Welingkar Server-controlled heartbeats
US7603435B2 (en) 2006-11-15 2009-10-13 Palm, Inc. Over-the-air device kill pill and lock
CN101689173B (zh) * 2007-03-29 2012-11-21 克里斯托弗·墨菲 用于经由虚拟软件的因特网安全的方法和***
US8179872B2 (en) 2007-05-09 2012-05-15 Research In Motion Limited Wireless router system and method
CA2637179A1 (fr) * 2008-07-30 2010-01-30 John H. Dunstan Dispositif et systeme permettant de valider et d'exploiter la selection, les ventes et la distribution de billets de loterie et d'autres processus de billets
US8943428B2 (en) 2010-11-01 2015-01-27 Synchronoss Technologies, Inc. System for and method of field mapping
CN104717192B (zh) * 2013-12-16 2018-05-18 腾讯科技(深圳)有限公司 合法性验证方法及中间服务器

Family Cites Families (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5644354A (en) * 1992-10-09 1997-07-01 Prevue Interactive, Inc. Interactive video system
US5586260A (en) * 1993-02-12 1996-12-17 Digital Equipment Corporation Method and apparatus for authenticating a client to a server in computer systems which support different security mechanisms
US5826039A (en) * 1995-12-29 1998-10-20 Lucent Technologies Inc. Universal connection point for resources and communication unrelated to a physical endpoint
CA2202118A1 (fr) * 1996-04-29 1997-10-29 Mitel Corporation Methode de stockage persistant protege pour applications
EP0966822A2 (fr) * 1997-03-10 1999-12-29 Internet Dynamics, Inc. Procedes et appareil de controle d'acces a des informations
US5987523A (en) * 1997-06-04 1999-11-16 International Business Machines Corporation Applet redirection for controlled access to non-orginating hosts
US5870544A (en) * 1997-10-20 1999-02-09 International Business Machines Corporation Method and apparatus for creating a secure connection between a java applet and a web server

Also Published As

Publication number Publication date
WO2000011832A1 (fr) 2000-03-02
CN1227858C (zh) 2005-11-16
EA200100257A1 (ru) 2001-12-24
CN1354934A (zh) 2002-06-19
CA2341213A1 (fr) 2000-03-02
EP1105996A1 (fr) 2001-06-13
EP1105996A4 (fr) 2005-08-17
IL141530A0 (en) 2002-03-10
EA003374B1 (ru) 2003-04-24
JP2002523973A (ja) 2002-07-30

Similar Documents

Publication Publication Date Title
CA2341213C (fr) Systeme et procede permettant l'acces securise a des services dans un reseau informatique
US7287271B1 (en) System and method for enabling secure access to services in a computer network
US6766454B1 (en) System and method for using an authentication applet to identify and authenticate a user in a computer network
US10567391B2 (en) Graduated authentication in an identity management system
US7627896B2 (en) Security system providing methodology for cooperative enforcement of security policies during SSL sessions
KR100800339B1 (ko) 제휴 환경에서 사용자에 의해 결정된 인증 및 단일 사인온을 위한 방법 및 시스템
US7849306B2 (en) Relay method of encryption communication, gateway server, and program and program memory medium of encryption communication
KR100856674B1 (ko) 클라이언트 서버 환경에서 클라이언트를 인증하는 시스템및 방법
EP1661362B1 (fr) Syst me et proc d permettant d' voluer vers une authentication fond e sur sur la pr sentation d'un certificat, sans interruption d'une session ssl en cours
US7581244B2 (en) IMX session control and authentication
EP1701510B1 (fr) Accès à distance sécurisé à des serveurs Web privés non publics
US20150096010A1 (en) Computer security system
US20020184507A1 (en) Centralized single sign-on method and system for a client-server environment
TW200307439A (en) Mechanism for supporting wired and wireless methods for client and server side authentication
JP5602165B2 (ja) ネットワーク通信を保護する方法および装置
CA2494225C (fr) Authentification graduee dans un systeme de gestion d'identite
US20060122936A1 (en) System and method for secure publication of online content
US20020165783A1 (en) Accounting in peer-to-peer data communication networks
Allen et al. The ASP. NET Security Infrastructure

Legal Events

Date Code Title Description
EEER Examination request
MKEX Expiry

Effective date: 20180821

MKEX Expiry

Effective date: 20180821