or
Bookmark and Share
Local authentication of a client at a network device
   
Document Number
US Patent 7506054
Issued Date
March 17, 2009
Link
Inventors
Qu; Diheng (Santa Clara, CA)
Map
Abstract
A method and apparatus that provide network access control are disclosed. In one embodiment, a network device is configured to intercept network traffic initiated from a client and directed toward a network resource, and to locally authenticate the client. Authentication is carried out by comparing information identifying the client to authentication information stored in the network device. In one embodiment, an authentication cache in the network device stores the authentication information. If the client identifying information is authenticated successfully against the stored authentication information, the network device is dynamically re-configured to allow network traffic initiated by the client to reach the network resource. If local authentication fails, new stored authentication is created for the client, and the network device attempts to authenticate the client using a remote authentication server. If remote authentication is successful, the local authentication information is updated so that subsequent requests can authenticate locally. As a result, a client may be authenticated locally at a router or similar device, reducing network traffic to the authentication server.
Tags:
Description:
Amusing 0%
Clever 0%
Complex 0%
Efficient 0%
Historic 0%
Important 0%
Innovative 0%
Interesting 0%
Practical 0%
Simple 0%
Number of Claims:
30
Comments:
no comments yet
Owner
Cisco Technology, Inc. (San Jose, CA)
Published
March 17, 2009
Application Number
10/611,460
Filed
June 30, 2003
US Classification
709/225  
Int'l Classification
G06F   15/173   (20060101)  
Examiner
Assistant Examiner
Parent Case
CROSS-REFERENCE TO RELATED APPLICATIONS; PRIORITY CLAIM This application claims priority under 35 U.S.C. .sctn.120 as a Continuation of prior application Ser. No. 10/264,655, filed on Oct. 3, 2002 now U.S. Pat. No. 6,69,154, which is a Continuation of prior application Ser. No. 09/347,433, filed Jul. 2, 1999, now U.S. Pat. No. 6,463,474, the entire contents of which are hereby incorporated by reference as if fully set forth herein.
USPTO Field of Search
709/225  
Related Patents
Claims
Description
About| FAQs| Terms & Disclaimer| Link to Us| Contact Us