Invention Grant
US09473485B2 Secure single sign-on for a group of wrapped applications on a computing device and runtime credential sharing
有权
为计算设备上的一组封装应用程序和运行时凭据共享安全单点登录
- Patent Title: Secure single sign-on for a group of wrapped applications on a computing device and runtime credential sharing
- Patent Title (中): 为计算设备上的一组封装应用程序和运行时凭据共享安全单点登录
-
Application No.: US14279971Application Date: 2014-05-16
-
Publication No.: US09473485B2Publication Date: 2016-10-18
- Inventor: H. Richard Kendall
- Applicant: Blue Cedar Networks, Inc.
- Applicant Address: US CA San Francisco
- Assignee: Blue Cedar Networks, Inc.
- Current Assignee: Blue Cedar Networks, Inc.
- Current Assignee Address: US CA San Francisco
- Agency: Kwan & Olynick LLP
- Main IPC: G06F21/41
- IPC: G06F21/41 ; H04L29/06 ; G06F21/31 ; G06F21/52 ; G06F21/62 ; H04W12/06 ; G06F21/44 ; G06F21/53 ; H04L9/08 ; H04W12/12

Abstract:
A mobile device user is able to execute an app in a federation of wrapped apps without having to login to that app provided that the user has already logged into another app in that federation. The federation of apps on the device uses multi-app authentication to enable the user to start subsequent apps after explicitly entering login credentials for another app in that federation. This feature is loosely referred to as single sign-on for apps in the federation. The multi-app authentication is implemented by giving the second app a chance to prove two facts. One that it knows where in the operating system keychain a login ticket is stored and two, what the hash value of a random byte array is. By showing these facts, the logged-into app can safely provide login credentials to subsequent app without the user having to enter a login name or password.
Public/Granted literature
Information query