The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Mar. 19, 2013

Filed:

Jul. 30, 2010
Applicants:

Odin J. Anderson, Bellevue, WA (US);

Stephen M. Patrick, Sammamish, WA (US);

Nasko Oskov, Kenmore, WA (US);

Konstantin E. Ryvkin, Kenmore, WA (US);

Guruprakash Bangalore Rao, Redmond, WA (US);

Balasubramanian Swaminathan, Redmond, WA (US);

Inventors:

Odin J. Anderson, Bellevue, WA (US);

Stephen M. Patrick, Sammamish, WA (US);

Nasko Oskov, Kenmore, WA (US);

Konstantin E. Ryvkin, Kenmore, WA (US);

Guruprakash Bangalore Rao, Redmond, WA (US);

Balasubramanian Swaminathan, Redmond, WA (US);

Assignee:

Microsoft Corporation, Redmond, WA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 9/00 (2006.01); G06F 15/16 (2006.01); G06F 17/00 (2006.01); G06F 15/173 (2006.01); G06F 9/46 (2006.01); H04L 29/06 (2006.01);
U.S. Cl.
CPC ...
Abstract

Authentication requests are redistributed among a plurality of authentication servers and to centrally managing authentication affinities among distributed servers using a secure channels affinity service. A computer system instantiates a secure channel management service configured to manage secure channel connections. The secure channel management service receives state inputs from currently deployed authentication servers. The authentication servers may be configured to queue authentication requests for transmission to authentication servers. The computer system determines that, based on the received state input, at least one of the secure channels is to be remapped to a different authentication server. The computer system also remaps the determined secure channels to distribute future authentication requests among the authentication servers. In some cases, the current state of an authentication proxy server is embedded in communications transmitted by the authentication server, such that the secure channel connections are managed using the embedded state information.


Find Patent Forward Citations

Loading…