Patents by Inventor Eric Olden

Eric Olden has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240114019
    Abstract: Systems, methods, and storage media for controlling access to an application in an identity infrastructure are disclosed. The method comprises requesting to access the application, wherein the application is associated with an identity system, determining a status of the identity system, the status comprising one of an available status and unavailable status. When the status comprises the unavailable status, transmitting a request for additional information, receiving the additional information, and verifying the additional information by referencing an identity cache associated with the identity system. In some cases, the method comprises authenticating a user to access the application when the status comprises the available status and/or the additional information has been verified, and in response to authenticating the user at the application, sending a communication from the application to the user, granting the user access to the application.
    Type: Application
    Filed: September 28, 2022
    Publication date: April 4, 2024
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Patent number: 11876796
    Abstract: Systems, methods, and storage media for abstraction and enforcement of protected resources in an identity infrastructure are disclosed. Exemplary implementations may: identify one or more protected resources for one or more identity domains of an identity infrastructure; receive, at the identity infrastructure, a dataflow pertaining to first identity data for a first identity domain; request the first identity session based at least in part on the first identity data; receive a request to access a first protected resource of the one or more protected resources; accept the first identity session by the first protected resource; and provide the first user access to the first protected resource.
    Type: Grant
    Filed: May 24, 2021
    Date of Patent: January 16, 2024
    Assignee: Strata Identity, Inc.
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Publication number: 20230421474
    Abstract: Systems, methods, and storage media for analyzing authentication and authorization requirements in an identity infrastructure are disclosed. Exemplary implementations may: intercept, at a server, a first request to access an application in the identity infrastructure; transmit, from the server, one or more of the first request and a modified version of the first request to the application; intercept, at the server, a response from the application, based at least in part on the transmission; and display, via at least one interface, an analysis of one or more of the first request, the modified version of the first request, and the response, wherein the analysis comprising determining requirements for application authentication and authorization requirements, identity protocol(s) and/or techniques utilized by the application, whether user-defined security requirements have been implemented, and/or whether application meets predetermined compliance standards.
    Type: Application
    Filed: June 21, 2023
    Publication date: December 28, 2023
    Inventors: Eric Olden, Carl Eric Leach, Christopher Marie, Elias Friedman
  • Publication number: 20230421583
    Abstract: Systems, methods, and storage media for abstracting session information for an application in an identity infrastructure are disclosed. Exemplary implementations may: intercept, from a first computing device, a request to communicate with the application; send the request to the application from the second computing device; receive a response from the application at the second computing device; cache the one or more first cookies; remove the one or more first cookies from the response; create one or more second cookies; and transmit the response to the first computing device from the second computing device.
    Type: Application
    Filed: June 21, 2023
    Publication date: December 28, 2023
    Inventors: Eric Olden, Carl Eric Leach, Christopher Marie, Todd Bailey
  • Patent number: 11855871
    Abstract: Systems, methods, and storage media for analyzing authentication and authorization requirements in an identity infrastructure are disclosed. Exemplary implementations may: intercept, at a server, a first request to access an application in the identity infrastructure; transmit, from the server, one or more of the first request and a modified version of the first request to the application; intercept, at the server, a response from the application, based at least in part on the transmission; and display, via at least one interface, an analysis of one or more of the first request, the modified version of the first request, and the response, wherein the analysis comprising determining requirements for application authentication and authorization requirements, identity protocol(s) and/or techniques utilized by the application, whether user-defined security requirements have been implemented, and/or whether application meets predetermined compliance standards.
    Type: Grant
    Filed: June 21, 2023
    Date of Patent: December 26, 2023
    Assignee: Strata Identity, Inc.
    Inventors: Eric Olden, Carl Eric Leach, Christopher Marie, Elias Friedman
  • Publication number: 20230370456
    Abstract: A system for controlling user access to an application is disclosed, where the system is configured to receive a request to access the application from a user, the application associated with an identity provider and a datastore; route the request to an intermediary; redirect the request to an identity provider for authentication; authenticate a user with the application based on receiving application identity information at the identity provider; generate a temporary user credential at the intermediary; provide the request along with the temporary user credential to the application; capture a backchannel request from the application to the datastore; confirm that the temporary user credential matches the one previously generated; send confirmation to the application that the temporary user credential enables user access to the application; send communication from the application to the user granting the user access to the application.
    Type: Application
    Filed: May 15, 2023
    Publication date: November 16, 2023
    Inventors: Christopher Marie, Carl Eric Leach, Eric Olden, Warren Fernandes
  • Patent number: 11818114
    Abstract: Systems, methods, and storage media for synchronizing identity information across identity domains in an identity infrastructure are disclosed. Exemplary implementations may: identify at least one of first identity data and first identity metadata in a first identity domain; identify at least one of second identity data and second identity metadata in a second identity domain; receive a request to change the at least one of the first identity data and the first identity metadata for at least one user; and update the at least one of second identity data and second identity metadata for the at least one user based on the request to change the at least one of the first identity data and the first identity metadata for the at least one user.
    Type: Grant
    Filed: June 10, 2021
    Date of Patent: November 14, 2023
    Assignee: Strata Identity, Inc.
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Patent number: 11362900
    Abstract: Systems, methods, and storage media for controlling identity information across multiple identity domains in a distributed identity infrastructure are disclosed. Exemplary implementations may: transmit first identity information from a first identity domain to an identity information control system; use the identity information control system to translate the first identity information from the first format to a second format and from the second format to a third format; send the first identity information in the third format from the identity information control system to a second identity domain; and replace second identity information in the second identity domain with the first identity information.
    Type: Grant
    Filed: June 11, 2021
    Date of Patent: June 14, 2022
    Assignee: Strata Identity, Inc.
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Publication number: 20210390170
    Abstract: Systems, methods, and storage media for migrating identity information across identity domains in an identity infrastructure are disclosed. Exemplary implementations may: receive a login request from a first user in a first identity domain; extract, from the login request, identity data, wherein the identity data comprises at least one of a user identifier and user credentials information associated with the first user; identify one or more credential verification resources in the first identity domain; verify at least one of the user identifier and user credentials information for the first user; identify one or more other identity domains, including at least a second identity domain, in the identity infrastructure, wherein the first user is an unmigrated user in the second identity domain; request additional identity data for the first user from the first identity domain; and create a user profile for the first user in the second identity domain.
    Type: Application
    Filed: June 8, 2021
    Publication date: December 16, 2021
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Publication number: 20210392132
    Abstract: Systems, methods, and storage media for synchronizing identity information across identity domains in an identity infrastructure are disclosed. Exemplary implementations may: identify at least one of first identity data and first identity metadata in a first identity domain; identify at least one of second identity data and second identity metadata in a second identity domain; receive a request to change the at least one of the first identity data and the first identity metadata for at least one user; and update the at least one of second identity data and second identity metadata for the at least one user based on the request to change the at least one of the first identity data and the first identity metadata for the at least one user.
    Type: Application
    Filed: June 10, 2021
    Publication date: December 16, 2021
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Publication number: 20210392048
    Abstract: Systems, methods, and storage media for controlling identity information across multiple identity domains in a distributed identity infrastructure are disclosed. Exemplary implementations may: transmit first identity information from a first identity domain to an identity information control system; use the identity information control system to translate the first identity information from the first format to a second format and from the second format to a third format; send the first identity information in the third format from the identity information control system to a second identity domain; and replace second identity information in the second identity domain with the first identity information.
    Type: Application
    Filed: June 11, 2021
    Publication date: December 16, 2021
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Publication number: 20210385210
    Abstract: Systems, methods, and storage media for abstraction and enforcement of protected resources in an identity infrastructure are disclosed. Exemplary implementations may: identify one or more protected resources for one or more identity domains of an identity infrastructure; receive, at the identity infrastructure, a dataflow pertaining to first identity data for a first identity domain; request the first identity session based at least in part on the first identity data; receive a request to access a first protected resource of the one or more protected resources; accept the first identity session by the first protected resource; and provide the first user access to the first protected resource.
    Type: Application
    Filed: May 24, 2021
    Publication date: December 9, 2021
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Publication number: 20210360034
    Abstract: Systems, methods, and storage media for assessment of identity resources in an identity infrastructure are disclosed. Exemplary implementations may: assess the identity infrastructure with at least one discovery agent element; identify, by the at least one discovery agent element, one or more infrastructure elements within the identity infrastructure; intercept, by the at least one discovery agent element, first network traffic in the identity infrastructure; assess, by the at least one discovery agent element, at least one of a status and a structure of the identity infrastructure; and report, by the at least one discovery agent element, at least one of the status and the structure of the identity infrastructure to one or more of an administrator and a centralized server.
    Type: Application
    Filed: May 11, 2021
    Publication date: November 18, 2021
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Publication number: 20210306325
    Abstract: Systems, methods, and storage media for management of identity systems in an identity infrastructure are disclosed. Exemplary implementations may: install a discovery agent in the identity infrastructure; assess the identity infrastructure by the discovery agent; install an identity fabric in the identity infrastructure based on the assessing; receive, at the identity infrastructure, one or more data flows pertaining to identity data or identity metadata for at least one identity domain/system; manage, by a controller element, control plane operations across one or more elements or agents; manage, by at least one of the agents, the one or more data flows; detect and monitor, by the one or more elements or agents, at least one event linked to the one or more data flows; and assess the identity data or metadata and an associated state across the identity domains in the identity infrastructure based on the detecting and monitoring.
    Type: Application
    Filed: March 30, 2021
    Publication date: September 30, 2021
    Inventors: Eric Olden, Christopher Marie, Carl Eric Leach
  • Patent number: 8990911
    Abstract: Systems, methods and apparatus for providing single sign on across a plurality of resources is disclosed. An exemplary method includes receiving a request from a user to access a particular one of the plurality of resources; establishing an SSO session for the user if an SSO session has not been established; determining if the user has been authenticated to the particular resource, and if not, retrieving credentials for the user that are specific to the resource; presenting the credentials to the resource so as to create a session with the resource; and presenting a user interface for a customer to configure which of the plurality of resources can be accessed by users.
    Type: Grant
    Filed: March 25, 2009
    Date of Patent: March 24, 2015
    Assignee: EMC Corporation
    Inventors: Eric Olden, Darren C. Platt, Coby Royer, Keshava Berg, Joseph H. Wallingford, III
  • Patent number: 8418238
    Abstract: A system, method and apparatus for managing access across a plurality of applications is disclosed. The system may include a user store connector configured to connect to one or more user stores to retrieve attributes; an authentication connector configured to communicate with at least one authentication subsystem to authenticate a user; a policy engine configured to retrieve attributes from the user store connector corresponding to a user and use the attributes to evaluate access policies, if any, which are defined for protection of resources, to determine whether or not the user should be granted access to the resources; an admin component that is configured to enable the access policies to be defined relative to attributes and the resources; and a policy store configured to store the access policies.
    Type: Grant
    Filed: March 25, 2009
    Date of Patent: April 9, 2013
    Assignee: Symplified, Inc.
    Inventors: Darren C. Platt, Coby Royer, Keshava Berg, Joseph H. Wallingford, III, Eric Olden
  • Publication number: 20090249439
    Abstract: Systems, methods and apparatus for providing single sign on across a plurality of resources is disclosed. An exemplary method includes receiving a request from a user to access a particular one of the plurality of resources; establishing an SSO session for the user if an SSO session has not been established; determining if the user has been authenticated to the particular resource, and if not, retrieving credentials for the user that are specific to the resource; presenting the credentials to the resource so as to create a session with the resource; and presenting a user interface for a customer to configure which of the plurality of resources can be accessed by users.
    Type: Application
    Filed: March 25, 2009
    Publication date: October 1, 2009
    Inventors: Eric Olden, Darren C. Platt, Coby Royer, Keshava Berg, Joseph H. Wallingford, III
  • Publication number: 20090249440
    Abstract: A system, method and apparatus for managing access across a plurality of applications is disclosed. The system may include a user store connector configured to connect to one or more user stores to retrieve attributes; an authentication connector configured to communicate with at least one authentication subsystem to authenticate a user; a policy engine configured to retrieve attributes from the user store connector corresponding to a user and use the attributes to evaluate access policies, if any, which are defined for protection of resources, to determine whether or not the user should be granted access to the resources; an admin component that is configured to enable the access policies to be defined relative to attributes and the resources; and a policy store configured to store the access policies.
    Type: Application
    Filed: March 25, 2009
    Publication date: October 1, 2009
    Inventors: Darren C. Platt, Coby Royer, Keshava Berg, Joseph H. Wallingford, III, Eric Olden