IDENTITY PROXY TO PROVIDE ACCESS CONTROL AND SINGLE SIGN ON

    公开(公告)号:US20190319962A1

    公开(公告)日:2019-10-17

    申请号:US16396354

    申请日:2019-04-26

    申请人: MOBILE IRON, INC.

    摘要: Techniques to provide secure access to a cloud-based service are disclosed. In various embodiments, a request is received from a client app on a device to connect to a security proxy associated with the cloud-based service. A secure tunnel connection between the device and a node with which the security proxy is associated is used to establish the requested connection to the security proxy. Information associated with the secure tunnel is used to determine that the requesting client app is authorized to access the cloud-based service from the device and to obtain from an identity provider associated with the cloud-based service a security token to be used by the client app to authenticate to the cloud-based service.

    Secure access to cloud-based services

    公开(公告)号:US10397239B2

    公开(公告)日:2019-08-27

    申请号:US16058916

    申请日:2018-08-08

    申请人: MOBILE IRON, INC.

    IPC分类号: H04L29/06 G06F21/33 H04W12/06

    摘要: Techniques to provide secure mobile access to a cloud-based service are disclosed. In various embodiments, a request to access the cloud-based service is received from a mobile device. A security certificate associated with the request is used to synthesize a basic authentication header associated with the request. The synthesized basic authentication header is sent to the cloud-based service on behalf of the mobile device.

    Containerized architecture to manage internet-connected devices

    公开(公告)号:US10374869B2

    公开(公告)日:2019-08-06

    申请号:US15270948

    申请日:2016-09-20

    申请人: MOBILE IRON, INC.

    发明人: Sandeep Jain

    IPC分类号: H04L12/24 H04L29/08 H04L29/06

    摘要: A containerized architecture to secure and manage Internet-connected devices, such as “Internet of Things” devices, is disclosed. In various embodiments, one or more containerized applications are run, e.g., on an Internet of Things gateway, subject to management by the management server. At least one of the containerized applications is a management agent configured to participate, subject to control of the management server, in management of one or more other of said containerized applications.

    Device identification in service authorization

    公开(公告)号:US10278069B2

    公开(公告)日:2019-04-30

    申请号:US14818151

    申请日:2015-08-04

    申请人: MOBILE IRON, INC.

    摘要: Techniques to authorize access to a service are disclosed. In various embodiments, a token that includes data comprising or otherwise associated with a device identifier of a device on which an application configured to access a service is installed is provided to the application. A service access authorization request that includes the token is received. The token is used to determine device information associated with the service access authorization request.

    Identity proxy to provide access control and single sign on

    公开(公告)号:US10116663B2

    公开(公告)日:2018-10-30

    申请号:US15962291

    申请日:2018-04-25

    申请人: MOBILE IRON, INC.

    摘要: Techniques to provide secure access to a cloud-based service are disclosed. In various embodiments, a request is received from a client app on a device to connect to a security proxy associated with the cloud-based service. A secure tunnel connection between the device and a node with which the security proxy is associated is used to establish the requested connection to the security proxy. Information associated with the secure tunnel is used to determine that the requesting client app is authorized to access the cloud-based service from the device and to obtain from an identity provider associated with the cloud-based service a security token to be used by the client app to authenticate to the cloud-based service.

    Application synchronization
    99.
    发明授权

    公开(公告)号:US10025836B2

    公开(公告)日:2018-07-17

    申请号:US14569547

    申请日:2014-12-12

    申请人: MOBILE IRON, INC.

    IPC分类号: G06F17/30 H04W4/50 H04W4/60

    摘要: Application synchronization techniques are disclosed. An indication is received that a mobile app has performed an operation affecting mobile app data of the mobile app. At least a portion of the mobile app data is stored to a remote storage system based at least in part on the indication. The indication may be received by and the storing operation may be performed at least in part by a management code embedded in mobile app code comprising the mobile app.