US Patent No. 10,462,117

METHOD AND SYSTEM FOR AUTHENTICATING A SURROUNDING WEB APPLICATION BY A WEB APPLICATION THAT IS TO BE EMBEDDED


Patent No. 10,462,117
Issue Date October 29, 2019
Title Method And System For Authenticating A Surrounding Web Application By A Web Application That Is To Be Embedded
Inventorship Roland Eckl, Forchheim (DE)
Harald Herberth, Oberasbach (DE)
Assignee Siemens Aktiengesellschaft, Munich (DE)

Claim of US Patent No. 10,462,117

1. A method for authenticating a surrounding first Web application by a second Web application before embedding the second Web application in the surrounding first Web application, the surrounding first Web application being executed in a browser, the second Web application after being embedded in the surrounding first Web application being executed in a separate execution and display area of the surrounding first Web application, the surrounding first Web application being provided by at least one first Web server, and the second Web application subsequent to being embedded in the surrounding first Web application being provided by at least one second Web server, the method comprising:authenticating the surrounding first Web application to the second Web application before embedding the second Web application in the first Web application, a first key utilized during the authentication being stored in the at least one first Web server, the first key utilized during the authentication being allocated to the surrounding first Web application the first key being utilized to sign the authentication messages utilized by the at least one second Web server, and the first key remaining within the at least one first Web server at all times;
exchanging the authentication messages signed via the first key between the at least one first Web server and the at least one second Web server via the browser; and
activating the second Web application only in an event of successful authentication or authorization.