Method and system of a secure access gateway

    公开(公告)号:US09729514B2

    公开(公告)日:2017-08-08

    申请号:US13849435

    申请日:2013-03-22

    IPC分类号: H04L29/06

    CPC分类号: H04L63/029 H04L63/08

    摘要: In one exemplary embodiment, a computer-implemented method of a secure-access gateway to a destination device in a protected computer network include the step of receiving a request from a remote user to access the destination device in the protected computer network. A session for the remote user is registered. The session includes an access to the destination device by the remote user according to a set of specified parameters controlled by the secure access gateway. The session is created. When the remote user connects and authenticates, the secure access gateway establishes the connection to the destination device on behalf of the remote user. The session is monitored according to the set of specified parameters. The session is monitored to determine if at least one specified parameters is achieved. The session between the remote user and the destination device is when terminated when the at least one specified parameters is achieved.

    Authentication server enhancements
    2.
    发明授权
    Authentication server enhancements 有权
    验证服务器增强功能

    公开(公告)号:US09578005B2

    公开(公告)日:2017-02-21

    申请号:US14500170

    申请日:2014-09-29

    IPC分类号: H04L29/06

    摘要: A set of authentication server configuration rules are implemented. The authentication server configuration rules utilize regular-expression based commands. A running log of commands entered by every user is maintained for each command is run by the at least one authentication server. A configuration diff command is run each time a session ends. A set of actions of an authentication-server administrator on the authentication server is tracked. The set of actions of the authentication-server administrator is stored in a log. The log includes a username of the authentication-server administrator who generated the log and a time source and a time zone associated of a location of the set of actions. A hash algorithm is run on the log. A portable document format (PDF) formatted the of the log is generated. A list of usernames is generated from a set logs that filled a user-authentication process required to access the authentication server.

    摘要翻译: 实现一组认证服务器配置规则。 认证服务器配置规则利用基于规则表达式的命令。 由至少一个认证服务器运行的每个命令维护每个用户输入的命令的运行日志。 每次会话结束时都会运行一个配置差异命令。 跟踪身份验证服务器上的身份验证服务器管理员的一组操作。 认证服务器管理员的一组操作存储在日志中。 该日志包括生成日志的身份验证服务器管理员的用户名,以及与该组操作的位置相关联的时间源和时区。 在日志上运行散列算法。 生成格式化日志的便携式文档格式(PDF)。 用户名的列表是从设置访问认证服务器所需的用户认证进程的集合日志生成的。