US2011202989A1PendingUtilityA1

Method and apparatus for providing authentication session sharing

Assignee: NOKIA CORPPriority: Feb 18, 2010Filed: Feb 18, 2010Published: Aug 18, 2011
Est. expiryFeb 18, 2030(~3.6 yrs left)· nominal 20-yr term from priority
H04W 12/08H04L 63/08H04W 4/18H04L 63/0861H04L 63/0815H04L 63/10H04L 63/0838H04L 63/083H04W 12/068H04W 12/062
43
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

An approach is provided for providing authentication session sharing between browsers and run time environments in network communication. An interface receives an authentication context associated with a first service. The interface causes, at least in part, storage of the authentication context in a first cache associated with the interface. The interface causes, at least in part, population of the authentication context to a second cache associated with a second service. The second cache is not directly linked to the interface. The authentication context in the second cache authenticates access to the second service.

Claims

exact text as granted — not AI-modified
1 . A method comprising:
 receiving, at an interface, an authentication context associated with a first service;   causing, at least in part, storage of the authentication context in a first cache associated with the interface; and   causing, at least in part, population of the authentication context to a second cache associated with a second service, the second cache not directly linked to the interface,   wherein the authentication context in the second cache authenticates access to the second service.   
     
     
         2 . A method of  claim 1 , wherein the population of the authentication context to the second cache comprises:
 converting the authentication context based, at least in part, on an authentication protocol associated with the second service,   wherein the authentication context in the second cache is the converted authentication context.   
     
     
         3 . A method of  claim 1 , further comprising:
 receiving, from the first service, a request to authenticate a user;   requesting authentication credentials associated with the user;   receiving the authentication credentials based on the request;   causing, at least in part, transmission of the authentication credentials to an authentication server,   wherein the authentication context is received from the authentication server based, at least in part, on the authentication credentials.   
     
     
         4 . A method of  claim 1 , wherein the authentication context is a single sign on authentication context applicable to both the first service and the second service. 
     
     
         5 . A method of  claim 1 , wherein the first service and the second service are runtime applications executing on a common device. 
     
     
         6 . A method of  claim 1 , wherein the first service and the second service include an application, a browser session. 
     
     
         7 . An apparatus comprising:
 at least one processor; and   at least one memory including computer program code,   the at least one memory and the computer program code configured to, with the at least one processor, cause the apparatus to perform at least the following,
 receive an authentication context associated with a first service; 
 cause, at least in part, storage of the authentication context in a first cache associated with the apparatus; and 
 cause, at least in part, population of the authentication context to a second cache associated with a second service, the second cache not directly linked to the apparatus, 
 wherein the authentication context in the second cache authenticates access to the second service. 
   
     
     
         8 . An apparatus of  claim 7 , wherein the population of the authentication context to the second cache comprises:
 converting the authentication context based, at least in part, on an authentication protocol associated with the second service,   wherein the authentication context in the second cache is the converted authentication context.   
     
     
         9 . An apparatus of  claim 7 , wherein the apparatus is further caused to:
 receive, from the first service, a request to authenticate a user;   request authentication credentials associated with the user;   receive the authentication credentials based on the request;   cause, at least in part, transmission of the authentication credentials to an authentication server,   wherein the authentication context is received from the authentication server based, at least in part, on the authentication credentials.   
     
     
         10 . An apparatus of  claim 7 , wherein the authentication context is a single sign on authentication context applicable to both the first service and the second service. 
     
     
         11 . An apparatus of  claim 7 , wherein the first service and the second service are runtime applications executing on a common device. 
     
     
         12 . An apparatus of  claim 7 , wherein the first service and the second service include an application, a browser session. 
     
     
         13 . An apparatus of  claim 7 , wherein the apparatus is a mobile phone further comprising:
 user interface circuitry and user interface software configured to facilitate user control of at least some functions of the mobile phone through use of a display and configured to respond to user input; and   a display and display circuitry configured to display at least a portion of a user interface of the mobile phone, the display and display circuitry configured to facilitate user control of at least some functions of the mobile phone.   
     
     
         14 . A computer-readable storage medium carrying one or more sequences of one or more instructions which, when executed by one or more processors, cause an apparatus to at least perform the following steps:
 receiving an authentication context associated with a first service;   causing, at least in part, storage of the authentication context in a first cache associated with the apparatus; and   causing, at least in part, population of the authentication context to a second cache associated with a second service, the second cache not directly linked to the apparatus,   wherein the authentication context in the second cache authenticates access to the second service.   
     
     
         15 . A computer readable storage medium of  claim 14 , wherein the population of the authentication context to the second cache comprises:
 converting the authentication context based, at least in part, on an authentication protocol associated with the second service,   wherein the authentication context in the second cache is the converted authentication context.   
     
     
         16 . A computer readable storage medium of  claim 14 , wherein the apparatus is caused to further perform:
 receiving, from the first service, a request to authenticate a user;   requesting authentication credentials associated with the user;   receiving the authentication credentials based on the request;   causing, at least in part, transmission of the authentication credentials to an authentication server,   wherein the authentication context is received from the authentication server based, at least in part, on the authentication credentials.   
     
     
         17 . A computer readable storage medium of  claim 14 , wherein the authentication context is a single sign on authentication context applicable to both the first service and the second service. 
     
     
         18 . A computer readable storage medium of  claim 14 , wherein the first service and the second service are runtime applications executing on a common device. 
     
     
         19 . A computer readable storage medium of  claim 14 , wherein the first service and the second service include an application, a browser session.

Join the waitlist — get patent alerts

Track US2011202989A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.