Invention Grant
- Patent Title: Intermediary handling of identity services to guard against client side attack vectors
-
Application No.: US16400304Application Date: 2019-05-01
-
Publication No.: US11297040B2Publication Date: 2022-04-05
- Inventor: Jason C. Bonci
- Applicant: Akamai Technologies Inc.
- Applicant Address: US MA Cambridge
- Assignee: Akamai Technologies Inc.
- Current Assignee: Akamai Technologies Inc.
- Current Assignee Address: US MA Cambridge
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L29/06 ; G06F21/00

Abstract:
This document describes, among other things, security hardening techniques that guard against certain client-side attack vectors. These techniques generally involve the use of an intermediary that detects and handles identity service transactions on behalf of a client. In one embodiment, the intermediary establishes a resource domain session with the client in order to provide the client with desired resource domain content or services from a resource domain host. The intermediary detects when the resource domain host invokes a federated identity service as a condition of client access. The intermediary handles the identity transaction in the identity domain on behalf of the client within the client's resource domain session. Upon successful authentication and/or authorization with an IdP, the intermediary connects the results of the identity services domain transaction to the resource domain.
Public/Granted literature
- US20200351248A1 INTERMEDIARY HANDLING OF IDENTITY SERVICES TO GUARD AGAINST CLIENT SIDE ATTACK VECTORS Public/Granted day:2020-11-05
Information query