Patents by Inventor Anat Bar

Anat Bar has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 9401911
    Abstract: Embodiments are directed to providing a certificate extension to an authentication certificate, to validating an authentication certificate request and to implementing authentication certificates that include certificate extensions. In an embodiment, a computer system accesses an authentication certificate request that is to be sent to a validation server for validation and to a certificate authority for issuance of an authentication certificate. The computer system appends an extension to the authentication certificate request. The extension includes origination information about the authentication certificate. The computer system then sends the authentication certificate request with the appended extension to the validation server for validation.
    Type: Grant
    Filed: February 10, 2011
    Date of Patent: July 26, 2016
    Assignee: Microsoft Technology Licensing, LLC
    Inventors: Ghila Castelnuovo, Ziv Ayalon, Anat Bar-Anan, Ben Bernstein, Philip Derbeko, Victor W. Heller, Aleksandr Radutskiy, Uzi Tuvian
  • Patent number: 8799649
    Abstract: A system adapted to condition access to a network over an IPsec session to clients providing a proper one-time-password, even though the network access control uses IKEv1, which does not support one-time-passwords. An authentication service receives from a client an access request including the one-time-password, and provides the one-time-password to a service that checks the password. The one-time-password service returns a cookie when the password is successfully validated and the client is properly authenticated. The cookie is passed on to the client computer, which uses the cookie as part of a request for a certificate. A certificate authority generates a certificate if a request for a certificate is received from an authenticated client, which in turn may be used to form the IPsec session for access to the network.
    Type: Grant
    Filed: May 13, 2010
    Date of Patent: August 5, 2014
    Assignee: Microsoft Corporation
    Inventors: Anat Eyal, Ben Bernstein, Anat Bar-Anan, Nimrod Vered
  • Publication number: 20120210123
    Abstract: Embodiments are directed to providing a certificate extension to an authentication certificate, to validating an authentication certificate request and to implementing authentication certificates that include certificate extensions. In an embodiment, a computer system accesses an authentication certificate request that is to be sent to a validation server for validation and to a certificate authority for issuance of an authentication certificate. The computer system appends an extension to the authentication certificate request. The extension includes origination information about the authentication certificate. The computer system then sends the authentication certificate request with the appended extension to the validation server for validation.
    Type: Application
    Filed: February 10, 2011
    Publication date: August 16, 2012
    Applicant: MICROSOFT CORPORATION
    Inventors: Ghila Castelnuovo, Ziv Ayalon, Anat Bar-Anan, Ben Bernstein, Philip Derbeko, Victor W. Heller, Aleksandr Radutskiy, Uzi Tuvian
  • Patent number: 8156249
    Abstract: In aspects, a gateway that sits between a single network protocol client and a server receives a request from the client for a network address of the server. The gateway issues multiple name resolution requests and waits for a first response. Depending on various factors, the gateway determines whether or not to wait for additional responses before responding to the client. If needed, the gateway may obtain an address of a translating device to assist the client in communicating with the server.
    Type: Grant
    Filed: February 20, 2009
    Date of Patent: April 10, 2012
    Assignee: Microsoft Corporation
    Inventors: Nir Nice, Philip Derbeko, Anat Bar-Anan, Anat Eyal
  • Publication number: 20110283103
    Abstract: A system adapted to condition access to a network over an IPsec session to clients providing a proper one-time-password, even though the network access control uses IKEv1, which does not support one-time-passwords. An authentication service receives from a client an access request including the one-time-password, and provides the one-time-password to a service that checks the password. The one-time-password service returns a cookie when the password is successfully validated and the client is properly authenticated. The cookie is passed on to the client computer, which uses the cookie as part of a request for a certificate. A certificate authority generates a certificate if a request for a certificate is received from an authenticated client, which in turn may be used to form the IPsec session for access to the network.
    Type: Application
    Filed: May 13, 2010
    Publication date: November 17, 2011
    Inventors: Anat Eyal, Ben Bernstein, Anat Bar-Anan, Nimrod Vered
  • Publication number: 20100217890
    Abstract: Aspects of the subject matter described herein relate to using server type to obtain a network address. In aspects, a gateway that sits between a single network protocol client and a server receives a request from the client for a network address of the server. The gateway issues multiple name resolution requests and waits for a first response. Depending on various factors, the gateway determines whether or not to wait for additional responses before responding to the client. If needed, the gateway may obtain an address of a translating device to assist the client in communicating with the server.
    Type: Application
    Filed: February 20, 2009
    Publication date: August 26, 2010
    Applicant: Microsoft Corporation
    Inventors: Nir Nice, Philip Derbeko, Anat Bar-Anan, Anat Eyal
  • Publication number: 20050221326
    Abstract: A method of determining predisposition of an individual of Ashkenazi descent to prostate cancer is provided. The method comprises determining a presence or absence of at least one nucleic acid sequence alteration in at least one allele of a RNASEL gene of the individual, wherein the presence of the at least one nucleic acid sequence alteration indicates predisposition to prostate cancer in the individual.
    Type: Application
    Filed: June 12, 2003
    Publication date: October 6, 2005
    Inventors: Avi Orr-Urtreger, Hanna Rennert, Dani Bercovich, Anat Bar-Shira, Yuval Yaron
  • Publication number: 20050021740
    Abstract: A method for processing communication traffic includes monitoring the communication traffic that is directed to a group of addresses on a network, and determining respective baseline characteristics of the communication traffic that is directed to each of the addresses in the group. Deviations from the respective baseline characteristics of the communication traffic directed to at least one of the addresses in the group are detected, as an indication that at least some of the communication traffic may be of malicious origin. Responsively to detecting the deviation, the communication traffic that is directed to all of the addresses in the group is filtered so as to remove at least some of the communication traffic that is of the malicious origin.
    Type: Application
    Filed: February 5, 2004
    Publication date: January 27, 2005
    Inventors: Anat Bar, Dan Touitou, Rami Rivlin