EP1162807B1

System and method for secure legacy enclaves in a public key infrastructure

Abstract

This record has no abstract on file.

EP1162807B1, drawing sheet 1
Sheet 1 of 3

Term

Term ended

Expired 31 May 2021, 5.3 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

11 claims: 3 independent, 8 dependent

  1. 1
    A system (100) for a secure legacy enclave in a Public Key Infrastructure (PKI) comprising:at least one legacy server (118), the at least one legacy server containing at least one legacy application (120);at least one client platform (128) operatively connected to a network, the at least one client platform containing legacy client software employable by at least one user to access the at one legacy application;a directory (108) operably connected to the network, the directory containing information on the at least one user, the directory further containing information on each at least one user designating whether each at least one user is authorized to access the at least one legacy server;and a Virtual Private Network (VPN) extranet gateway (142), the VPN extranet gateway operatively connected between the at least one legacy server (118) and the network, the VPN extranet gateway requesting a signature certificate of the at least one user attempting access to the legacy application to authenticate the at least one user, the VPN extranet gateway querying the directory (108) to confirm the at least one user is allowed access to the legacy server after authenticating the at least one user, the VPN extranet gateway establishing a connection between the legacy client software and the legacy application if the at least one user is allowed access to the legacy server.
  2. 4
    A method for secure legacy enclaves in a Public Key Infrastructure (PKI) comprising:installing a virtual private network (VPN) extranet gateway between at least one legacy server and a legacy client platform (51);attempting access to a legacy application on the at least one legacy server by a user employing legacy client software on the legacy client platform (53);requesting a signature certificate of the user by the VPN extranet gateway to authenticate the user (54);querying a directory by the VPN extranet gateway after authenticating the user to confirm the user is allowed access to the at least one legacy server (55);and establishing a connection between the legacy client software and the legacy application if the user is allowed access to the at least one legacy server (56).
  3. 9
    An article comprising a storage medium having instructions stored therein, the instructions when executed causing a processing device to perform:receiving an attempt to access a legacy application on a legacy server from a user employing legacy client software (53) ;requesting a signature certificate of the user to authenticate the user (54) ;querying a directory to confirm the user is allowed access to the legacy server after authenticating the user (55);and establishing a connection between the legacy client software and the legacy application if the user is allowed access to the legacy server (56).