Environment Single Sign-On Authentication Across Multiple Devices
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing single sign-on technologies are limited to a particular machine, preventing users from accessing assets controlled by multiple different machines without re-authentication.
Innovation Solution
A method for environment single sign-on is implemented, where a request from a principal on a first device is authenticated, and both the first and second devices are established as part of an environment, allowing access to protected resources without re-authentication across devices.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If single sign-on is implemented for a particular machine, then user authentication is simplified for that machine, but the user cannot access assets controlled by multiple different machines without re-authentication
Solution Approach 1:
The patent implements environment single sign-on that allows a user to authenticate once and access protected resources across multiple different machines within the same environment. The system establishes authentication sessions that are valid across the environment rather than being restricted to a single machine, making the authentication system universal across multiple devices.
Solution Approach 2:
The patent introduces an environment single sign-on system as an intermediary that manages authentication sessions across multiple machines. This intermediary system receives authentication requests, establishes sessions, and coordinates access control across the environment, enabling cross-machine access without requiring re-authentication on each individual machine.
2Loss of time
If traditional single sign-on is used, then authentication is required only once per machine, but users must re-authenticate when accessing resources from different machines
Solution Approach 1:
The environment single sign-on system creates authentication sessions that are universally valid across all machines in the environment, not just a single machine. When a user authenticates, the system establishes sessions that can be used to access protected resources from any machine within the environment, eliminating the need for re-authentication and saving time.
Solution Approach 2:
The patent merges multiple machine-specific authentication sessions into a single environment-wide authentication session. Instead of managing separate authentication states for each machine, the system combines them into a unified session management approach where one authentication validates access across the entire environment.
3Reliability
If single sign-on is limited to one machine, then security is maintained for that specific machine, but access to multiple protected resources across devices is restricted
Solution Approach 1:
The environment single sign-on system acts as an intermediary that maintains security control while enabling cross-machine access. It receives authentication requests, validates credentials, and manages session states across the environment, ensuring that security policies are enforced consistently while allowing authorized users to access resources from multiple machines.
Solution Approach 2:
The system provides universal access control across the environment while maintaining security. By establishing environment-wide authentication sessions, it allows users to access multiple protected resources from different machines without compromising security, as the session management system continues to enforce access controls centrally.
Data Source
AI summary
Techniques for environment single sign on are provided. Multiple identifiers for devices are associated as a single environment. A principal can be authenticated via any of the devices once to access protected resources and once authenticated the principal can access the protected resources from the other devices without re-authenticating.


