首页> 外国专利> SYSTEMS AND METHODS FOR POLICY BASED TRIGGERING OF CLIENT- AUTHENTICATION AT DIRECTORY LEVEL GRANULARITY

SYSTEMS AND METHODS FOR POLICY BASED TRIGGERING OF CLIENT- AUTHENTICATION AT DIRECTORY LEVEL GRANULARITY

机译:目录级别粒度下基于策略的客户端身份验证触发的系统和方法

摘要

Systems and methods are disclosed for an appliance to authenticate access of a client to a protected directory on a server via a connection, such as a secure SSL connection, established by the appliance. A method comprises the steps of: receiving, by an appliance, a first request from a client on a first network to access a server on a second network, the appliance providing the client a virtual private network connection from the first network to the second network; determining, by the appliance, the first request comprises access to a protected directory of the server; associating, by the appliance, an authentication policy with the protected directory, the authentication policy specifying an action to authenticate the client's access to the protected directory; and transmitting, by the appliance in response to the authentication policy, a second request to the client for an authentication certificate. Corresponding systems are also disclosed.
机译:公开了一种用于设备的系统和方法,以通过该设备建立的连接(例如安全SSL连接)来认证客户机对服务器上受保护目录的访问。一种方法,包括以下步骤:由设备从第一网络上的客户端接收访问第二网络上的服务器的第一请求,该设备向客户端提供从第一网络到第二网络的虚拟专用网络连接。 ;所述设备确定所述第一请求包括访问所述服务器的受保护目录;装置将认证策略与受保护目录相关联,该认证策略指定用于认证客户端对受保护目录的访问的动作;所述设备响应于所述认证策略,向所述客户端发送第二请求以用于认证证书。还公开了相应的系统。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号