Invention Grant
- Patent Title: State token based approach to secure web applications
-
Application No.: US16829722Application Date: 2020-03-25
-
Publication No.: US11381555B2Publication Date: 2022-07-05
- Inventor: Dharmendra Adsule
- Applicant: T-MOBILE USA, INC.
- Applicant Address: US WA Bellevue
- Assignee: T-MOBILE USA, INC.
- Current Assignee: T-MOBILE USA, INC.
- Current Assignee Address: US WA Bellevue
- Agency: Marshall, Gerstein & Borun LLP
- Main IPC: H04L9/40
- IPC: H04L9/40

Abstract:
Techniques for securing a single page application (SPA) are provided. An API server that receives an API call from an SPA to navigate a first user to a first state of the SPA navigates the first user to the first state of the SPA and generates a first token indicating that the first user has accessed the first state of the SPA. When the API server receives a request from the first user to navigate to a second state of the SPA (the request including the first token), the API server verifies that the first token indicating that the first user has accessed the first state of the SPA is valid for the second state of the SPA before navigating the first user to the second state of the SPA. Additionally, the API server expires the first token upon navigating the first user to the second state of the SPA.
Public/Granted literature
- US20210306314A1 STATE TOKEN BASED APPROACH TO SECURE WEB APPLICATIONS Public/Granted day:2021-09-30
Information query