-
公开(公告)号:US20240275794A1
公开(公告)日:2024-08-15
申请号:US18646095
申请日:2024-04-25
Applicant: Cisco Technology, Inc.
Inventor: Sharif Mufid-Sharif Anani , Omar Abduljaber , Christopher Carl Cassell , Marc Neuberger , David Steven Gross , Luis Daniel Mendez
IPC: H04L9/40
CPC classification number: H04L63/108 , H04L63/0807 , H04L63/083 , H04L2463/082
Abstract: According to an embodiment, a system comprises one or more processors and one or more computer-readable non-transitory storage media comprising instructions that, when executed by the one or more processors, cause one or more components of the system to perform operations. The operations comprise determining that an endpoint device has requested to discover a location of a protected resource that is protected by a gateway, determining whether the endpoint device has provided a token that is valid, and permitting the endpoint device to discover the location of the protected resource based on determining that the endpoint device has provided the token that is valid. The token indicates that the endpoint device successfully completed a first multi-factor authentication procedure in connection with accessing an authentication enforcement resource.
-
公开(公告)号:US20240275786A1
公开(公告)日:2024-08-15
申请号:US18643700
申请日:2024-04-23
Applicant: Cisco Technology, Inc.
Inventor: Oliver Robert Stocker , Jeremy Lee Erickson , David Steven Gross
IPC: H04L9/40
CPC classification number: H04L63/0884
Abstract: In one embodiment, a method includes receiving, by a WebAuthn proxy, login prompt information from a browser. The WebAuthn proxy and the browser are installed on a device. The method also includes generating, by the WebAuthn proxy, a WebAuthn credential request based on the login prompt information and communicating, by the WebAuthn proxy, the WebAuthn credential request to a WebAuthn authenticator. The method further includes receiving, by the WebAuthn proxy, a WebAuthn response from the WebAuthn authenticator and communicating, by the WebAuthn proxy, the WebAuthn response to the browser.
-
公开(公告)号:US20230126355A1
公开(公告)日:2023-04-27
申请号:US17506956
申请日:2021-10-21
Applicant: Cisco Technology, Inc.
Inventor: Sharif Mufid-Sharif Anani , Omar Abduljaber , Christopher Carl Cassell , Marc Neuberger , David Steven Gross , Luis Daniel Mendez
IPC: H04L29/06
Abstract: According to an embodiment, a system comprises one or more processors and one or more computer-readable non-transitory storage media comprising instructions that, when executed by the one or more processors, cause one or more components of the system to perform operations. The operations comprise determining that an endpoint device has requested to discover a location of a protected resource that is protected by a gateway, determining whether the endpoint device has provided a token that is valid, and permitting the endpoint device to discover the location of the protected resource based on determining that the endpoint device has provided the token that is valid. The token indicates that the endpoint device successfully completed a first multi-factor authentication procedure in connection with accessing an authentication enforcement resource.
-
公开(公告)号:US12284185B2
公开(公告)日:2025-04-22
申请号:US18643700
申请日:2024-04-23
Applicant: Cisco Technology, Inc.
Inventor: Oliver Robert Stocker , Jeremy Lee Erickson , David Steven Gross
IPC: H04L9/40
Abstract: In one embodiment, a method includes receiving, by a WebAuthn proxy, login prompt information from a browser. The WebAuthn proxy and the browser are installed on a device. The method also includes generating, by the WebAuthn proxy, a WebAuthn credential request based on the login prompt information and communicating, by the WebAuthn proxy, the WebAuthn credential request to a WebAuthn authenticator. The method further includes receiving, by the WebAuthn proxy, a WebAuthn response from the WebAuthn authenticator and communicating, by the WebAuthn proxy, the WebAuthn response to the browser.
-
公开(公告)号:US11799856B2
公开(公告)日:2023-10-24
申请号:US17194000
申请日:2021-03-05
Applicant: Cisco Technology, Inc.
Inventor: David Steven Gross , Jennifer Lee Bammel , David William Matteson , Christopher Carl Cassell , Kyle David Mills
IPC: H04L9/40 , H04L101/663
CPC classification number: H04L63/0876 , H04L2101/663
Abstract: This disclosure describes techniques for identifying an application (e.g., accessing application) that is attempting to access a resource. In some examples, access may be managed by an authentication service. When an access request is received at the authentication service from an application on a client device, the authentication service may ask the application to communicate with an identification agent on the client device. The identification agent may perform one or more tests to discover the identity of the application. In some cases, the identification agent may send the identity of the application to the authentication service. The authentication service may then allow or deny access by the accessing application to the resource based at least in part on the discovered identity.
-
公开(公告)号:US20230171252A1
公开(公告)日:2023-06-01
申请号:US17456690
申请日:2021-11-29
Applicant: Cisco Technology, Inc.
Inventor: Oliver Robert Stocker , Jeremy Lee Erickson , David Steven Gross
IPC: G06F21/44
CPC classification number: H04L63/0884
Abstract: In one embodiment, a method includes receiving, by a WebAuthn proxy, login prompt information from a browser. The WebAuthn proxy and the browser are installed on a device. The method also includes generating, by the WebAuthn proxy, a WebAuthn credential request based on the login prompt information and communicating, by the WebAuthn proxy, the WebAuthn credential request to a WebAuthn authenticator. The method further includes receiving, by the WebAuthn proxy, a WebAuthn response from the WebAuthn authenticator and communicating, by the WebAuthn proxy, the WebAuthn response to the browser.
-
公开(公告)号:US12003512B2
公开(公告)日:2024-06-04
申请号:US17506956
申请日:2021-10-21
Applicant: Cisco Technology, Inc.
Inventor: Sharif Mufid-Sharif Anani , Omar Abduljaber , Christopher Carl Cassell , Marc Neuberger , David Steven Gross , Luis Daniel Mendez
CPC classification number: H04L63/108 , H04L63/0807 , H04L63/083 , H04L2463/082
Abstract: According to an embodiment, a system comprises one or more processors and one or more computer-readable non-transitory storage media comprising instructions that, when executed by the one or more processors, cause one or more components of the system to perform operations. The operations comprise determining that an endpoint device has requested to discover a location of a protected resource that is protected by a gateway, determining whether the endpoint device has provided a token that is valid, and permitting the endpoint device to discover the location of the protected resource based on determining that the endpoint device has provided the token that is valid. The token indicates that the endpoint device successfully completed a first multi-factor authentication procedure in connection with accessing an authentication enforcement resource.
-
公开(公告)号:US11997090B2
公开(公告)日:2024-05-28
申请号:US17456690
申请日:2021-11-29
Applicant: Cisco Technology, Inc.
Inventor: Oliver Robert Stocker , Jeremy Lee Erickson , David Steven Gross
IPC: H04L9/40
CPC classification number: H04L63/0884
Abstract: In one embodiment, a method includes receiving, by a WebAuthn proxy, login prompt information from a browser. The WebAuthn proxy and the browser are installed on a device. The method also includes generating, by the WebAuthn proxy, a WebAuthn credential request based on the login prompt information and communicating, by the WebAuthn proxy, the WebAuthn credential request to a WebAuthn authenticator. The method further includes receiving, by the WebAuthn proxy, a WebAuthn response from the WebAuthn authenticator and communicating, by the WebAuthn proxy, the WebAuthn response to the browser.
-
公开(公告)号:US20240031365A1
公开(公告)日:2024-01-25
申请号:US18477063
申请日:2023-09-28
Applicant: Cisco Technology, Inc.
Inventor: David Steven Gross , Jennifer Lee Bammel , David William Matteson , Christopher Carl Cassell , Kyle David Mills
IPC: H04L9/40
CPC classification number: H04L63/0876 , H04L2101/663
Abstract: This disclosure describes techniques for identifying an application (e.g., accessing application) that is attempting to access a resource. In some examples, access may be managed by an authentication service. When an access request is received at the authentication service from an application on a client device, the authentication service may ask the application to communicate with an identification agent on the client device. The identification agent may perform one or more tests to discover the identity of the application. In some cases, the identification agent may send the identity of the application to the authentication service. The authentication service may then allow or deny access by the accessing application to the resource based at least in part on the discovered identity.
-
公开(公告)号:US20220286455A1
公开(公告)日:2022-09-08
申请号:US17194000
申请日:2021-03-05
Applicant: Cisco Technology, Inc.
Inventor: David Steven Gross , Jennifer Lee Bammel , David William Matteson , Christopher Carl Cassell , Kyle David Mills
Abstract: This disclosure describes techniques for identifying an application (e.g., accessing application) that is attempting to access a resource. In some examples, access may be managed by an authentication service. When an access request is received at the authentication service from an application on a client device, the authentication service may ask the application to communicate with an identification agent on the client device. The identification agent may perform one or more tests to discover the identity of the application. In some cases, the identification agent may send the identity of the application to the authentication service. The authentication service may then allow or deny access by the accessing application to the resource based at least in part on the discovered identity.
-
-
-
-
-
-
-
-
-