Client Device API Interception for Application Single Sign-On
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current single sign-on solutions are primarily designed for web-based applications and do not effectively provide access for applications residing entirely or partially on a client device, leading to a need for a solution that enables seamless user authentication for locally installed applications.
Innovation Solution
The system intercepts API requests on a client device, determines user credentials remotely, and returns them to the client device to enable single sign-on access to applications, allowing users to access applications without displaying login forms or requiring manual input of credentials.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If single sign-on access is provided for web-based applications, then user authentication is simplified, but it does not work for applications residing entirely or partially on a client device
Solution Approach 1:
The patent implements a universal single sign-on system that works across multiple application types including web-based applications, locally installed applications, and virtualized applications. The system uses a common authentication mechanism that intercepts API requests from any application type and processes them through a unified credential management system, enabling one authentication system to serve multiple functions and application platforms
2Ease of operation
If login forms are displayed for authentication, then users can manually input credentials, but user convenience is reduced and the authentication process becomes more complex
Solution Approach 1:
The system implements self-service authentication by automatically intercepting API requests that contain authentication parameters, retrieving the necessary credentials from stored authentication data, and completing the sign-on process without requiring user interaction. The system serves itself by autonomously handling the authentication workflow, eliminating the need for users to manually fill out login forms or enter credentials
Solution Approach 2:
The system performs preliminary authentication by storing authentication data obtained during initial login, and then uses this pre-stored data to automatically complete subsequent authentication requests. The authentication credentials are prepared in advance and made readily available for automatic retrieval and use, eliminating the need for repeated manual authentication
Data Source
AI summary
Systems and method for providing single sign on access to an application executing at a client device. An API request is intercepted at the client device for signing on a user of the client device for accessing the application. The API request is sent to a remote system where user credentials are determined based on the intercepted API request. The user credentials are returned to the client device where they are used to agnostically sign on the user for accessing the application.


