Invention Grant
- Patent Title: Authorization to access a server in the cloud without obtaining an initial secret
-
Application No.: US15334440Application Date: 2016-10-26
-
Publication No.: US10027669B2Publication Date: 2018-07-17
- Inventor: Boaz Sapir , Gleb Keselman , Yaron Sheffer
- Applicant: Intuit Inc.
- Applicant Address: US CA Mountain View
- Assignee: Intuit Inc.
- Current Assignee: Intuit Inc.
- Current Assignee Address: US CA Mountain View
- Agency: Hawley Troxell Ennis & Hawley LLP
- Agent Philip McKay
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L29/08 ; G06F21/62

Abstract:
A method and system provides access control for sensitive data. An access control system defines a plurality of access policies for gaining access to the sensitive data. Each access policy includes a plurality of rules that indicate whether or not the client machine can gain access to an initial access secret under the policy. When the access control system receives access request data from a client machine requesting access to the access control system under one of the policies, the access control system compares characteristics of the client machine to the rules of the access policy. If the characteristics of the client machine satisfy the rules of the access policy in the access control system provides an initial access secret, such as an application key, to the client machine.
Public/Granted literature
- US20180115550A1 AUTHORIZATION TO ACCESS A SERVER IN THE CLOUD WITHOUT OBTAINING AN INITIAL SECRET Public/Granted day:2018-04-26
Information query