Environment Single Sign-On Authentication Across Multiple Devices

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing single sign-on technologies are limited to a particular machine, preventing users from accessing assets controlled by multiple different machines without re-authentication.

Innovation Solution

A method for environment single sign-on is implemented, where a request from a principal on a first device is authenticated, and both the first and second devices are established as part of an environment, allowing access to protected resources without re-authentication across devices.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If single sign-on is implemented for a particular machine, then user authentication is simplified for that machine, but the user cannot access assets controlled by multiple different machines without re-authentication

Engineering Contradiction:
Improveauthentication convenienceVSAvoidcross-machine access capability
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent implements environment single sign-on that allows a user to authenticate once and access protected resources across multiple different machines within the same environment. The system establishes authentication sessions that are valid across the environment rather than being restricted to a single machine, making the authentication system universal across multiple devices.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent introduces an environment single sign-on system as an intermediary that manages authentication sessions across multiple machines. This intermediary system receives authentication requests, establishes sessions, and coordinates access control across the environment, enabling cross-machine access without requiring re-authentication on each individual machine.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Loss of time

If traditional single sign-on is used, then authentication is required only once per machine, but users must re-authenticate when accessing resources from different machines

Engineering Contradiction:
Improveauthentication timeVSAvoidenvironment-wide access
Core Design Contradiction:
Loss of timeVSAdaptability or versatility

Solution Approach 1:

The environment single sign-on system creates authentication sessions that are universally valid across all machines in the environment, not just a single machine. When a user authenticates, the system establishes sessions that can be used to access protected resources from any machine within the environment, eliminating the need for re-authentication and saving time.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent merges multiple machine-specific authentication sessions into a single environment-wide authentication session. Instead of managing separate authentication states for each machine, the system combines them into a unified session management approach where one authentication validates access across the entire environment.

Inventive Principle:
Principle #5Merging (Combining)

3Reliability

If single sign-on is limited to one machine, then security is maintained for that specific machine, but access to multiple protected resources across devices is restricted

Engineering Contradiction:
Improvesecurity controlVSAvoidaccess to multiple resources
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The environment single sign-on system acts as an intermediary that maintains security control while enabling cross-machine access. It receives authentication requests, validates credentials, and manages session states across the environment, ensuring that security policies are enforced consistently while allowing authorized users to access resources from multiple machines.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system provides universal access control across the environment while maintaining security. By establishing environment-wide authentication sessions, it allows users to access multiple protected resources from different machines without compromising security, as the session management system continues to enforce access controls centrally.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8782765B2Techniques for environment single sign on
Publication Date: 2014.07.15 MICRO FOCUS SOFTWARE INC
  • US8782765B2 patent drawing
  • US8782765B2 patent drawing
  • US8782765B2 patent drawing

AI summary

Techniques for environment single sign on are provided. Multiple identifiers for devices are associated as a single environment. A principal can be authenticated via any of the devices once to access protected resources and once authenticated the principal can access the protected resources from the other devices without re-authenticating.