Patent · US Expired

Method and system for single sign-on user access to multiple web servers

US7137006B1 · kind B1 · utility

185Cited by
24References
38Claims
0Family size

Assignee

Inventors

Key dates

Filing dateSep 22, 2000
Grant dateNov 14, 2006
Priority date
Expiry dateNov 27, 2022

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2221/2149
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Methods and systems for single sign-on user access to multiple web servers are provided. A user is authenticated at a first web server (e.g., by user name and password). The first web server provides a web page to the user having a service selector (e.g., a hyperlink comprising the URL of a second web server offering the service indicated by the selector). When the user activates the service selector, the first web server constructs and transmits an encrypted authentication token (e.g., a cookie) from the first web server to a second web server via the user client. The first and second web servers share a sub-domain. The authentication token comprises an expiration time and is digitally signed by the first web server and is authenticated at the second web server. Upon authentication, the second web server allows the user to conduct a session at the second web server.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.