- Patent Title: Cloud proxy for federated single sign-on (SSO) for cloud services
-
Application No.: US16362549Application Date: 2019-03-22
-
Publication No.: US10659450B2Publication Date: 2020-05-19
- Inventor: Kartik Kumar Chatnalli Deshpande Sridhar , Lebin Cheng , Krishna Narayanaswamy
- Applicant: Netskope, Inc.
- Applicant Address: US CA Santa Clara
- Assignee: Netskope, Inc.
- Current Assignee: Netskope, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Haynes Beffel & Wolfeld, LLP
- Agent Ernest J. Beffel, Jr.; Paul A. Durdik
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L29/08 ; H04L9/32 ; H04L9/14 ; H04L9/30

Abstract:
The technology disclosed relates to non-intrusively enforcing security during federated single sign-on (SSO) authentication without modifying a trust relationship between a service provider (SP) and an identity provider (IDP). In particular, it relates to configuring the IDP to use a proxy-URL for forwarding an assertion generated when a user logs into the SP, in place of an assertion consumer service (ACS)-URL of the SP. It also relates to configuring an assertion proxy, at the proxy-URL, to use the SP's ACS-URL for forwarding the assertion to the SP. It further relates to inserting the assertion proxy in between the user's client and an ACS of the SP by forwarding the assertion to the SP's ACS-URL to establish a federated SSO authenticated session through the inserted assertion proxy.
Public/Granted literature
- US20190222568A1 Non-Intrusive Security Enforcement for Federated Single Sign-On (SSO) Public/Granted day:2019-07-18
Information query