US2019052623A1PendingUtilityA1

Authenticating Applications to a Network Service

Assignee: HEWLETT PACKARD ENTPR DEV LPPriority: Jan 30, 2013Filed: Oct 16, 2018Published: Feb 14, 2019
Est. expiryJan 30, 2033(~6.5 yrs left)· nominal 20-yr term from priority
H04L 9/3263H04L 63/0428H04L 63/0823H04L 63/0807H04L 63/102H04L 63/0227
48
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Authenticating applications to a network service includes authenticating an application with a certificate to access a service provider over a logical connection between the application and the service provider and confirming that the application is using an authorized port of the service provider.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A method, comprising:
 authenticating an application with a certificate to access a service provider over a logical connection between said application and said service provider; and   confirming that said application is using an authorized port of said service provider.   
     
     
         2 . The method of  claim 1 , further comprising confirming that packets sent from said application comprise a key from said service provider. 
     
     
         3 . The method of  claim 2 , wherein said key has a time expiration. 
     
     
         4 . The method of  claim 2 , further comprising sending to said application updated key information in response to said key becoming outdated. 
     
     
         5 . The method of  claim 1 , further comprising receiving a request from said application to obtain said certificate from said service provider. 
     
     
         6 . The method of  claim 5 , further comprising generating said certificate for said application in response to gaining approval from said network administrator. 
     
     
         7 . The method of  claim 1 , wherein said application is authorized to use a subset of ports belonging to said service provider. 
     
     
         8 . The method of  claim 1 , wherein said logical connection is encrypted. 
     
     
         9 . The method of  claim 1 , further comprising maintaining a table of which of multiple ports belonging to said service provider are authorized for use to said application and other applications requesting services of said service provider. 
     
     
         10 . A system; comprising:
 a certificate generation engine to generate a certificate for an application;   a certificate signing engine to sign the certificate;   an application authentication engine to authenticate said application to use said service provider;   a port engine to confirm that said application is authorized to use a port of said service provider; and   a packet authorization engine to authorize packets at said service provider from said application.   
     
     
         11 . The system of  claim 10 , wherein said certificate generation engine seeks approval from a network administrator before generating said certificate. 
     
     
         12 . The system of  claim 10 , further comprising a key updating engine to update said application with updated keys as older keys from said service provider to be embedded into packets from said application become outdated. 
     
     
         13 . The system of  claim 10 , further comprising a tracking engine to track which of multiple applications are authorized to use which of multiple ports belonging to said service provider. 
     
     
         14 . A computer program product, comprising:
 a non-transitory computer readable storage medium, said non-transitory computer readable storage medium comprising computer readable program code embodied therewith, said computer readable program code comprising program instructions that, when executed, causes a processor to:
 confirm that an application has a certificate to access a service provider over a logical connection between said application and said service provider; 
 confirm that said application is using an authorized port of said service provider; and 
 confirm that packets sent from said application comprise a key from said service provider. 
   
     
     
         15 . The computer program product of  claim 14 , further comprising computer readable program code comprising program instructions that, when executed, causes said processor to send an update for said key to said application in response to said key becoming outdated.

Join the waitlist — get patent alerts

Track US2019052623A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.