Wallix

France

Back to Profile

1-35 of 35 for Wallix Sort by
Query
Aggregations
IP Type
        Patent 30
        Trademark 5
Jurisdiction
        World 12
        Canada 11
        United States 11
        Europe 1
Date
2022 2
2021 5
Before 2021 28
IPC Class
H04L 29/06 - Communication control; Communication processing characterised by a protocol 10
H04L 29/08 - Transmission control procedure, e.g. data link level control procedure 6
H04L 9/08 - Key distribution 5
G06F 21/44 - Program or device authentication 4
H04L 9/00 - Arrangements for secret or secure communicationsNetwork security protocols 4
See more
NICE Class
09 - Scientific and electric apparatus and instruments 5
42 - Scientific, technological and industrial services, research and design 5
45 - Legal and security services; personal services for individuals. 4
38 - Telecommunications services 3
41 - Education, entertainment, sporting and cultural services 3
See more
Status
Pending 8
Registered / In Force 27

1.

Method for connecting a computer application to a secure computer resource

      
Application Number 17418717
Grant Number 12047364
Status In Force
Filing Date 2019-12-26
First Publication Date 2022-03-10
Grant Date 2024-07-23
Owner WALLIX (France)
Inventor Adda, Serge

Abstract

A method for connecting an application to a resource by a command, the application being provided for configuring the resource by connecting to the resource by means of a program and configuration parameters, the program implementing a client side of a communication protocol, the method comprising the steps of executing the command when the program is called by the application, the command being interposed between the application and the program; receiving authentication data for accessing the resource, by querying a vault, on the basis of configuration parameters; establishing a connection between the command and the resource by executing the program, into which the authentication data for accessing the resource are input and the configuration parameters retrieved; and establishing a direct connection between the application and the resource.

IPC Classes  ?

2.

WALLIX

      
Application Number 1639705
Status Registered
Filing Date 2021-05-20
Registration Date 2021-05-20
Owner WALLIX (France)
NICE Classes  ?
  • 09 - Scientific and electric apparatus and instruments
  • 38 - Telecommunications services
  • 41 - Education, entertainment, sporting and cultural services
  • 42 - Scientific, technological and industrial services, research and design
  • 45 - Legal and security services; personal services for individuals.

Goods & Services

Software; computer software; software for provision of security on networks, the Internet, extranet and computers; software for provision of security concerning online transactions; software for provision of online identity protection, privacy control and parental control; software to prevent, diagnose, computer problems; software for provision of intrusion detection and prevention; software for scanning, detecting, and removing viruses, spam, adware, spyware and other malware; antivirus, antispam, firewall software for computers, filtering tools; software for use in monitoring and controlling computer and online activity; software for protection against fraud; computer software and downloadable software, namely, utility software; open source software packages; software for certifying registration and data storage in the field of computer security; software for automating processes for archiving physical and/or electronic data; software for logging and/or traceability in the field of transmitting, securing and archiving of physical and/or electronic data; software for securing and/or cryptography of physical and/or electronic data; manual and/or automatic indexing software; software for displaying multi-format secure files; search engine software; Apparatus for recording, transmitting and reproducing text, sound or images; digital, magnetic and optical recording media; digital, magnetic and optical data media; apparatus for recording the time (timestamping); computer programs; apparatus and instruments for recording, storing, processing, analyzing, transmitting, distributing and/or displaying data; security solutions, namely, computer software and programs for managing computer access to resources; computer programs for accessing computer networks, wireless networks and the Internet; computer terminals; data terminals. Providing access to databases, namely, provision of access to databases. Education; training; entertainment; organization of competitions (education or entertainment); organization and conducting of colloquiums, conferences, congresses; organization of exhibitions for cultural or educational purposes. Computer security consultancy; computer support in the field of computer security and data security; engineering and technical support services for software and security; computer diagnostic services; computer data recovery; technical support services, namely, troubleshooting of computer software and hardware problems; software installation services; programming for computers; computer network services; Internet security services, namely, security services for computer networks, computer access and computerized transactions; technical advice in relation to software installation and maintenance; consulting services in the field of design, selection, implementation and use of computer apparatus and computer systems; design, elaboration, installation, development, updating, servicing and maintenance of software, software packages, applications, computer programs, hosted and/or operated services (SaaS), online databases and platforms; provision of information in the field of network and Internet security; expertise, expertise in industrializing free software and open source development; online technical support in the field of computers, software and computer systems; computer security services, namely, computer network security services, computer access and computerized transactions; controlling the computer systems of others for technical purposes; project studies in the field of computer security; risk and prevention studies in the field of computer security; setting up and managing technical support procedures for events regarding software, databases, computers and computer security; implementing platforms for the deployment of secure remote systems and architectures; provision of information in the field of computer and online security services, via computer networks, wireless networks and the Internet; controlling computer systems for security purposes; provision of computer threat management systems, namely, monitoring and tracking vulnerability and security-related problems in software products, on the Internet, and on computer networks; designing computer systems and software architecture; computer programming services; maintenance of database software; monitoring of computer systems for the detection of unauthorized access or data protection breaches; electronic data storage; online data storage; software as a service [SaaS]; control software design for self-service terminals. Identity theft protection services, namely, fraud prevention in the nature of controlling personal and financial information; licensing of computer software and programs; security services for the protection of identities, terminals, infrastructures, servers (computer hardware) for others; identity screening services.

3.

Method and device for detecting compromise of a target by a side attack

      
Application Number 17259515
Grant Number 12069068
Status In Force
Filing Date 2019-06-24
First Publication Date 2021-10-21
Grant Date 2024-08-20
Owner WALLIX (France)
Inventor
  • Tan, Meng
  • Adda, Serge

Abstract

A method for detecting a side attack of a target by a user comprising a step of recording data relating to a so-called sensitive file, the sensitive file being a configuration file of the target; a step of primary connection of the user on a proxy gateway to establish a secondary connection of the proxy gateway on the target; a step of verification of the integrity of the sensitive file, subsequently to the step of secondary connection of the proxy gateway on the target and when the integrity of the sensitive tile is determined as compromised by the step of verification of the integrity of the sensitive file, and a step of detection of a side attack of the target by the user.

IPC Classes  ?

  • H04L 9/40 - Network security protocols
  • H04L 9/32 - Arrangements for secret or secure communicationsNetwork security protocols including means for verifying the identity or authority of a user of the system

4.

Method for supplying a secure connection proxy

      
Application Number 16318059
Grant Number 11477205
Status In Force
Filing Date 2017-07-20
First Publication Date 2021-09-16
Grant Date 2022-10-18
Owner WALLIX (France)
Inventor
  • Pinson, Eric
  • Adda, Serge

Abstract

A method for automatically supplying a secure connection proxy with remote targets on the basis of privileged account data, includes a step of exploring, by a robot program, at least one domain for identifying the privileged accounts; a step of filtering the privileged accounts on the basis of criteria; steps of extracting characteristics from identified privileged accounts; and a step of supplying the proxy with the gathered data.

IPC Classes  ?

5.

WALLIX

      
Serial Number 79331419
Status Registered
Filing Date 2021-05-20
Registration Date 2023-01-17
Owner WALLIX (France)
NICE Classes  ?
  • 38 - Telecommunications services
  • 09 - Scientific and electric apparatus and instruments
  • 41 - Education, entertainment, sporting and cultural services
  • 42 - Scientific, technological and industrial services, research and design
  • 45 - Legal and security services; personal services for individuals.

Goods & Services

Providing access to databases, namely, provision of access to databases downloadable and recorded access security and authorization software for authorizing access to databases; downloadable and recorded computer access security and authorization software for authorizing access to databases; downloadable and recorded software for provision of security on networks, the Internet, extranet and computers; downloadable and recorded software for provision of security concerning online transactions; downloadable and recorded software for provision of online identity protection, privacy control and parental control; downloadable and recorded software to prevent and diagnose computer problems; downloadable and recorded software for provision of intrusion detection and prevention; downloadable and recorded software for scanning, detecting, and removing viruses, spam, adware, spyware and other malware; downloadable and recorded antivirus, antispam, and firewall software for computers incorporating filtering software; downloadable and recorded software for use in monitoring and controlling computer and online activity; downloadable and recorded software for protection against fraud; recorded computer software and downloadable software, namely, utility software; open source software packages, namely, downloadable and recorded open source computer software for authorizing access to databases; downloadable and recorded software for certifying registration and data storage in the field of computer security; downloadable and recorded software for automating processes for archiving physical and electronic data; downloadable and recorded software for logging and traceability in the field of transmitting, securing and archiving of physical and electronic data; downloadable and recorded software for securing and cryptography of physical and electronic data; manual and automatic downloadable and recorded indexing software; downloadable and recorded software for displaying multi-format secure files; downloadable and recorded search engine software; Apparatus for recording, transmitting and reproducing text, sound or images; digital, magnetic and optical recording media, namely, blank data carriers and digital storage media; digital, magnetic and optical data media, namely, blank data carriers and digital storage media; apparatus for recording the time, namely, time clocks for timestamping; downloadable and recorded computer programs for authorizing access to databases; apparatus and instruments for recording, storing, processing, analyzing, transmitting, distributing and displaying data, namely, blank digital storage media, digital displays, data processors; security solutions, namely, downloadable and recorded computer software and programs for managing computer access to resources; downloadable and recorded computer programs for accessing computer networks, wireless networks and the Internet; computer terminals; mobile data terminals Education, namely, providing courses of instruction in the field of computer security; training in the use and operation of computer security hardware and software; entertainment, namely, organizing and arranging exhibitions for entertainment purposes; organization of competitions, namely, online competitions in the field of entertainment and computer security; organization and conducting of colloquiums, conferences for educational or entertainment purposes, and congresses in the field of computer security; organization of exhibitions for cultural or educational purposes Computer security consultancy; computer technology support in the field of computer security and data security, namely, help desk services; engineering and technical support services for software and security, namely, troubleshooting of computer software problems; computer diagnostic services; computer data recovery; technical support services, namely, troubleshooting in the nature of diagnosing computer software and hardware problems; software installation services; programming for computers; computer network configuration services; Internet security services, namely, security services for restricting unauthorized access to computer networks, computer systems and computerized transactions; technical advice in relation to software installation and maintenance; consulting services in the field of design, selection, implementation and use of computer apparatus and computer systems; design, elaboration, installation, development, updating, servicing and maintenance of software, software packages comprising computer software programs, applications, computer programs, hosted and/or operated services (SaaS), online databases and computer platforms; provision of technology information in the field of network and Internet security; expertise in the nature of computer software consulting and advisory regarding industrializing free software and open source development; online technical support in the field of computers, software and computer systems, namely, providing online security threat analysis for protecting data; computer security services, namely, computer network security services for enforcing, restricting and controlling computer access privileges of users of computer networks and encrypting data for computerized transactions; controlling the computer systems of others for technical purposes, namely, remote management of information technology systems of others; project studies being research in the field of computer security; risk and prevention studies being research in the field of computer security; setting up and managing technical support procedures for events regarding software, databases, computers and computer security, namely, infrastructure management services for establishing and administering computer disaster recovery plans; implementing computer platforms for the deployment of secure remote technology systems and architectures; provision of technology information in the field of computer and online security services, via computer networks, wireless networks and the Internet; controlling access privileges of users of computer systems for security purposes; provision of computer threat management systems, namely, computer security threat analysis for protecting data provided by means of monitoring and tracking vulnerability and security-related problems in software products, on the Internet, and on computer networks; designing computer systems and software architecture; computer programming services; maintenance of database software; monitoring of computer systems for the detection of unauthorized access or data protection breaches; electronic data storage; online data storage; software as a service (SaaS) featuring software for encrypting data and assigning credentials, featuring software for provision of identity and access security on networks, the Internet, extranet and computers, data security, data analytics ; control software design for self-service terminals licensing of computer software and programs; security services for monitoring of security alarm systems for the protection of identities, terminals, infrastructures, and computer servers for others; identity screening services, namely, providing background investigations

6.

WALLIX

      
Application Number 216097700
Status Registered
Filing Date 2021-05-20
Registration Date 2025-02-17
Owner WALLIX (France)
NICE Classes  ?
  • 09 - Scientific and electric apparatus and instruments
  • 38 - Telecommunications services
  • 41 - Education, entertainment, sporting and cultural services
  • 42 - Scientific, technological and industrial services, research and design
  • 45 - Legal and security services; personal services for individuals.

Goods & Services

(1) Logiciels pour autoriser l'accès à des bases de données; logiciels pour la fourniture de sécurité sur les réseaux, l'Internet, l'Extranet et les ordinateurs; logiciels pour la fourniture de sécurité concernant les transactions en ligne; logiciels pour la fourniture en ligne de protection d'identité, de contrôle de la vie privée, et de contrôle parental; logiciels pour empêcher, diagnostiquer, des problèmes informatiques; logiciels de sécurité informatique pour la détection et la prévention des intrusions de virus; logiciels pour le scannage, la détection, et l'élimination de virus, de spams, de messages publicitaires, de logiciels espions, et autres programmes malveillants; logiciels antivirus, antispams, logiciels pare-feu pour ordinateurs [firewall], logiciel de filtrage de courrier électronique; logiciels destinés à la surveillance et au contrôle de l'activité sur ordinateur et en ligne; logiciel de protection contre la fraude, nommément logiciels de protection de la vie privée et des renseignements confidentiels ; logiciels informatiques et logiciels téléchargeables, à savoir, logiciels utilitaires pour la réalisation de diagnostics de systèmes informatiques; logiciels open source packagés, nommément logiciels à code source ouvert pour autoriser l'accès à des bases de données; logiciels de certification d'enregistrement et de stockage de données dans le domaine de la sécurité informatiques; logiciels d'automatisation des processus d'archivage de données physiques et électroniques; logiciels permettant le suivi de la transmission, de la sécurisation, et de l'archivage de données physiques et électroniques; logiciels pour la sécurité des données physiques et électroniques; logiciels informatiques pour la gestion de la sécurité cryptographique des transmissions électroniques à travers les réseaux informatiques; logiciels d'indexation manuelle et automatique, nommément programmes de service d'archivage de fichiers; logiciels de visualisation sécurisée de fichiers multi-formats pour la protection d'identité, le contrôle de la vie privée, et le contrôle parental; moteurs de recherche en tant que logiciels; appareils pour l'enregistrement, la transmission, la reproduction du texte, du son, et des images, nommément moniteurs informatiques, imprimantes d'ordinateurs et imprimantes photo, scanneurs informatiques, télécopieurs, écouteurs et casques d'écoute, projecteurs multimédias, haut-parleurs, automates d'appels, processeurs de signaux, processeurs vidéo, processeurs de sons, processeurs de signaux par satellites, récepteurs audiovisuels, transformateurs audiovisuels, caméras vidéo, lecteurs de disques compacts, écrans d'ordinateurs, écrans d'ordinateurs tactiles, écrans de projection, enceintes d'ambiance de cinéma maison, terminaux a écran; supports d'enregistrement numériques, magnétiques, optiques, nommément disques magnétiques vierges, disques compacts vierges, clés USB vierges, cartes mémoires flash vierges; supports de données numériques, magnétiques, optiques, nommément disques magnétiques, disques compacts, clés USB et cartes mémoires flash préenregistrées contenant de l'information dans le domaine de la protection d'identité, du contrôle de la vie privée, et du contrôle parental ; appareils pour l'enregistrement de temps (horodatage), nommément horloges de pointage; programmes informatiques pour autoriser l'accès à des bases de données, pour la fourniture de sécurité sur les réseaux, sur l'Internet, sur l'Extranet et sur les ordinateurs, pour la fourniture de sécurité concernant les transactions en ligne, pour la fourniture en ligne de protection d'identité, de contrôle de la vie privée, et de contrôle parental, pour empêcher et diagnostiquer des problèmes informatiques, pour la détection et la prévention des intrusions de virus, pour le scannage, la détection, et l'élimination de virus, de spams, de messages publicitaires, de logiciels espions, et autres programmes malveillants, pour le filtrage de courrier électronique, pour la surveillance et le contrôle de l'activité sur ordinateur et en ligne, pour la protection de la vie privée et des renseignements confidentiels, pour la réalisation de diagnostics de systèmes informatiques, pour la certification d'enregistrement et de stockage de données dans le domaine de la sécurité informatiques, pour l'automatisation des processus d'archivage de données physiques et électroniques, pour le suivi de la transmission, de la sécurisation, et de l'archivage de données physiques et électroniques, pour la sécurité des données physiques et électroniques, pour la gestion de la sécurité cryptographique des transmissions électroniques à travers les réseaux informatiques, pour l'archivage de fichiers et pour la visualisation sécurisée de fichiers multi-formats pour la protection d'identité, le contrôle de la vie privée, et le contrôle parental; appareils et instruments pour enregistrer, stocker, traiter, analyser, transmettre, distribuer et afficher des données, nommément matériel informatique, ordinateurs, serveurs informatiques, unités centrales de traitement, puces d'ordinateurs , cartes d'interface ordinateurs, cartes mères et cartes filles , matériel de réseau pour serveurs d'accès a des réseaux, matériel informatique pour serveurs de stockage en réseau [NAS], tablettes électroniques, stations d'accueil pour ordinateurs portables, cartes interface informatiques, cartes graphiques pour ordinateurs ; solutions de sécurité, à savoir logiciels et programmes informatiques de gestion des accès informatiques aux ressources; programmes informatiques d'accès à des réseaux informatiques, à des réseaux sans fil et à l'Internet; terminaux informatiques à écran; terminaux de données mobiles (MDT). (1) Mise à disposition d'accès à des bases de données, à savoir fourniture d'accès à des bases de données. (2) Éducation, nommément organisation et tenue de cours dans le domaine de la sécurité informatique; formation, nommément formation à la gestion des risques en matière de cybersécurité et à l'utilisation de logiciels et de matériel pour la sécurité informatique ; divertissement, nommément organisation d'expositions dans le domaine de la sécurité informatique à des fins de divertissement; organisation de concours dans le domaine de la sécurité informatique ; organisation et conduite de colloques, de conférences, de congrès éducatifs dans le domaine de la sécurité informatique; organisation d'expositions à buts culturels et éducatifs dans le domaine de la sécurité informatique. (3) Consultation en matière de sécurité informatique; assistance informatique dans le domaine de la sécurité informatique et sécurité des données; services d'assistance technique et d'ingénierie pour les logiciels et la sécurité informatique; services de diagnostic de problèmes de matériel et logiciels informatiques; récupération de données informatiques; services de support technique, à savoir résolution de problèmes logiciels et de matériel informatique; services d'installation de logiciels; programmation pour ordinateurs; services de réseaux informatiques, nommément administration de droits d'utilisateurs sur des réseaux informatiques, conception et développement de réseaux informatiques pour le compte de tiers, configuration de réseaux informatiques ; services de sécurité sur Internet, à savoir services de sécurité pour réseaux informatiques, accès informatiques et transactions informatisées; conseils techniques en matière d'installation et d'entretien de logiciels; conseils en matière de conception, de sélection, de mise en service et d'utilisation d'appareils informatiques et de systèmes informatiques; conception, élaboration, installation, développement, mise à jour, entretien et maintenance de logiciels, de progiciels, d'applications, de programmes informatiques hébergés localement et opérés (SaaS), de bases de données et de plateformes en ligne dans le domaine de la cybersécurité; fourniture d'informations dans le domaine de la sécurité sur des réseaux et l'Internet; expertise, nommément conseils et consultation dans le domaine de l'optimisation de solutions de cybersécurité à base de logiciels libres et le développement à partir de logiciels à code source ouvert; support technique en ligne dans le domaine des ordinateurs, des logiciels et des systèmes informatiques, nommément diagnostic de problèmes de matériel informatique et de logiciels, détection et diagnostic des intrusions de virus; services de sécurité informatique, à savoir services de sécurité pour réseaux informatiques, accès informatiques et transactions informatisées; services de contrôle de systèmes informatiques de tiers à des fins techniques; études de projets dans le domaine de la sécurité informatique; études relatives aux risques et à la prévention dans le domaine de la sécurité informatique; mise en place et gestion de procédures d'assistance technique pour les évènements affectant les logiciels, les bases de données, les ordinateurs et la sécurité informatique; mise en place de plateformes en tant que service (PaaS) pour le déploiement à distance de systèmes informatiques et d'architectures logicielles; fourniture d'informations dans le domaine des services de sécurité informatique et en ligne, via des réseaux informatiques, des réseaux sans fil et l'Internet; contrôle de systèmes informatiques à des fins de sécurité; fourniture de systèmes de gestion de menaces informatiques, à savoir surveillance et suivi de la vulnérabilité et des problèmes liés à la sécurité dans des produits logiciels, sur l'Internet, et sur des réseaux informatiques; conception de systèmes informatiques et d'architecture logicielle; services de programmation informatique; maintenance de logiciels de bases de données; surveillance de systèmes informatiques pour la détection d'accès non autorisés ou d'atteintes à la protection de données; stockage électronique de données pour l'archivage sécurisé de documents personnels et confidentiels; stockage de données en ligne, nommément fournisseur d'informatique en nuage pour le stockage de données; logiciel-service [SaaS] pour autoriser l'accès à des bases de données, pour la fourniture de sécurité sur les réseaux, sur l'Internet, sur l'Extranet et sur les ordinateurs, pour la fourniture de sécurité concernant les transactions en ligne, pour la fourniture en ligne de protection d'identité, de contrôle de la vie privée, et de contrôle parental, pour empêcher et diagnostiquer des problèmes informatiques, pour la détection et la prévention des intrusions de virus, pour le scannage, la détection, et l'élimination de virus, de spams, de messages publicitaires, de logiciels espions, et autres programmes malveillants, pour le filtrage de courrier électronique, pour la surveillance et le contrôle de l'activité sur ordinateur et en ligne, pour la protection de la vie privée et des renseignements confidentiels, pour la réalisation de diagnostics de systèmes informatiques, pour la certification d'enregistrement et de stockage de données dans le domaine de la sécurité informatiques, pour l'automatisation des processus d'archivage de données physiques et électroniques, pour le suivi de la transmission, de la sécurisation, et de l'archivage de données physiques et électroniques, pour la sécurité des données physiques et électroniques, pour la gestion de la sécurité cryptographique des transmissions électroniques à travers les réseaux informatiques, pour l'archivage de fichiers et pour la visualisation sécurisée de fichiers multi-formats pour la protection d'identité, le contrôle de la vie privée, et le contrôle parental; conception de logiciels de contrôle pour terminaux libre-service. (4) Services de protection contre le vol d'identité, à savoir prévention des fraudes sous forme du contrôle des informations personnelles et financières; octroi de licences de logiciels et de programmes informatiques; service de sécurité pour le compte d'autrui pour la protection contre le vol d'identité et pour la protection de biens matériels, nommément des terminaux, des infrastructures, et des serveurs (matériel informatique); services de vérification d'identité, nommément authentification de renseignements individuels sur l'identité.

7.

Integration of a standard network protocol layer in a web browser by compilation to webassembly and use of a websocket

      
Application Number 16464627
Grant Number 11277500
Status In Force
Filing Date 2017-11-07
First Publication Date 2021-04-01
Grant Date 2022-03-15
Owner WALLIX (France)
Inventor
  • Grosjean, Christophe
  • Adda, Serge

Abstract

A standard network protocol layer is integrated in a Web browser by compilation to Webassembly and use of a Websocket. A method for connecting a local client device to a remote computing resource, by establishing a computing session in accordance with a standard protocol includes: executing on the client device a Web browsing application; opening a first tunnel (websocket) with a server GATEWAY, wherein the opening of the first tunnel between the client device and the GATEWAY commands the opening of a network connection with the remote resource. The Web application executed on the local client calculates data packets in accordance with a standard protocol (RDP or SSH for example) and commands the transmission of the data packets to the remote resource in the native format of the protocol, without transcoding or transformation other than the standard processing of websockets, by way of the server gateway (Proxy websocket) ensuring the transfer without modification of the packet received from the client device, to the remote server.

IPC Classes  ?

  • H04L 29/06 - Communication control; Communication processing characterised by a protocol
  • H04L 12/66 - Arrangements for connecting between networks having differing types of switching systems, e.g. gateways
  • H04L 29/08 - Transmission control procedure, e.g. data link level control procedure
  • H04L 69/16 - Implementation or adaptation of Internet protocol [IP], of transmission control protocol [TCP] or of user datagram protocol [UDP]
  • H04L 67/08 - Protocols specially adapted for terminal emulation, e.g. Telnet

8.

Method and device for displaying, on a local terminal, an application executed on a remote server by means of a remote office protocol

      
Application Number 16766232
Grant Number 11055117
Status In Force
Filing Date 2018-10-31
First Publication Date 2020-11-26
Grant Date 2021-07-06
Owner WALLIX (France)
Inventor
  • Zhou, Raphaël
  • Grosjean, Christophe

Abstract

A method for displaying a graphic object, which is generated by a remote server in a local window, which is displayed on a display device, the local terminal communicating with the server via a proxy gateway for the remote office protocol, the gateway establishing a connection between the terminal and the server, the connection comprising a primary connection, which is established between the local terminal and the proxy gateway of the remote application type, and a secondary connection, which is established between the proxy gateway and the remote server, comprises a step of detecting the type of secondary connection and a step, carried out by the proxy gateway, of converting data, which are from the remote server, and which relate to a local window of the office type, into data, which are intended for the local terminal and which relate to a local window of the application type.

IPC Classes  ?

  • G06F 3/0481 - Interaction techniques based on graphical user interfaces [GUI] based on specific properties of the displayed interaction object or a metaphor-based environment, e.g. interaction with desktop elements like windows or icons, or assisted by a cursor's changing behaviour or appearance
  • G06F 9/451 - Execution arrangements for user interfaces
  • H04L 29/08 - Transmission control procedure, e.g. data link level control procedure
  • H04L 29/06 - Communication control; Communication processing characterised by a protocol

9.

METHOD FOR CONNECTING A COMPUTER APPLICATION TO A SECURE COMPUTER RESOURCE

      
Application Number FR2019053299
Publication Number 2020/141277
Status In Force
Filing Date 2019-12-26
Publication Date 2020-07-09
Owner WALLIX (France)
Inventor Adda, Serge

Abstract

The invention relates to a method for connecting an application (A) to a resource (D) by a command (B), the application being provided for configuring the resource by connecting to the resource by means of a program (F) and configuration parameters, the program implementing a client side of a communication protocol, the method comprising the steps of executing the command when the program is called by said application, the command being interposed between the application and the program; receiving authentication data for accessing the resource, by querying a vault (C), on the basis of configuration parameters; establishing a connection between the command and the resource by executing the program, into which the authentication data for accessing the resource are input and the configuration parameters retrieved; establishing a direct connection between the application and the resource.

IPC Classes  ?

  • H04L 9/08 - Key distribution
  • H04L 29/06 - Communication control; Communication processing characterised by a protocol
  • H04L 29/08 - Transmission control procedure, e.g. data link level control procedure

10.

METHOD FOR CONNECTING A COMPUTER APPLICATION TO A SECURE COMPUTER RESOURCE

      
Document Number 03121595
Status Pending
Filing Date 2019-12-26
Open to Public Date 2020-07-09
Owner WALLIX (France)
Inventor Adda, Serge

Abstract

The invention relates to a method for connecting an application (A) to a resource (D) by a command (B), the application being provided for configuring the resource by connecting to the resource by means of a program (F) and configuration parameters, the program implementing a client side of a communication protocol, the method comprising the steps of executing the command when the program is called by said application, the command being interposed between the application and the program; receiving authentication data for accessing the resource, by querying a vault (C), on the basis of configuration parameters; establishing a connection between the command and the resource by executing the program, into which the authentication data for accessing the resource are input and the configuration parameters retrieved; establishing a direct connection between the application and the resource.

IPC Classes  ?

  • H04L 9/08 - Key distribution
  • H04L 67/08 - Protocols specially adapted for terminal emulation, e.g. Telnet
  • H04L 67/125 - Protocols specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks involving control of end-device applications over a network

11.

Method for accessing a secure computer resource by a computer application

      
Application Number 16492890
Grant Number 11157610
Status In Force
Filing Date 2018-01-26
First Publication Date 2020-03-05
Grant Date 2021-10-26
Owner WALLIX (France)
Inventor Adda, Serge

Abstract

A method for accessing a secure computer resource by a computer application having no human-machine interaction for inputting authentication information comprises: a) a first initialization step comprising the creation of a temporary cryptographic key consisting of applying a cryptographic process to a plurality of information that is invariant over time and of encrypting, using the thus calculated key, authentication data of an account authorized to access a vault with passwords and b) steps for automatic access by the application to the secure computer resource consisting of creating a temporary cryptographic key consisting of applying a cryptographic process to the plurality of information that is invariant over time, reading the credentials file created during the initialization step and decrypting the credentials file with the temporary cryptographic key calculated in the preceding step, then transferring, to the calling application, the data coming from the computer resource.

IPC Classes  ?

  • H04L 9/00 - Arrangements for secret or secure communicationsNetwork security protocols
  • G06F 21/44 - Program or device authentication
  • G06F 21/53 - Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity, buffer overflow or preventing unwanted data erasure by executing in a restricted environment, e.g. sandbox or secure virtual machine
  • G06F 21/57 - Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities

12.

METHOD AND DEVICE FOR DETECTING COMPROMISE OF A TARGET BY A SIDE ATTACK

      
Document Number 03106137
Status Pending
Filing Date 2019-06-24
Open to Public Date 2020-01-16
Owner WALLIX (France)
Inventor
  • Tan, Meng
  • Adda, Serge

Abstract

Method for detecting a side attack of a target (3) by a user comprising a step of recording (E) data relating to a so-called sensitive file, said sensitive file being a configuration file of the target; a step of primary connection (C1) of the user on an agent gateway (2) to establish a secondary connection (C2) of the agent gateway on the target; a step of verification (C) of the integrity of the sensitive file, subsequently to the step of secondary connection of the agent gateway on the target and when the integrity of the sensitive file is determined as compromised by the step of verification of the integrity of the sensitive file, a step of detection (D) of a side attack of the target by the user.

IPC Classes  ?

  • G06F 21/55 - Detecting local intrusion or implementing counter-measures

13.

Method for information retrieval in an encrypted corpus stored on a server

      
Application Number 16483684
Grant Number 11308233
Status In Force
Filing Date 2018-02-05
First Publication Date 2020-01-16
Grant Date 2022-04-19
Owner WALLIX (France)
Inventor Binsztok, Henri

Abstract

A method for information retrieval in an encrypted corpus stored on a server, from a digital request calculated on a customer device, containing a sequence of terms, includes the following steps: encryption of the request on a customer computer device and transmission of same to a database management server; and homomorphic calculation, on the server, of the encrypted response to the encrypted request recorded on the server. The method further comprises an additional requesting step performed on the customer device; and presentation of the result in an ordered form of the documents, in application of the processing of the previous step. The present disclosure also relates to a method for preparing a requestable base and to a method for information retrieval in an encrypted corpus.

IPC Classes  ?

  • G06F 16/00 - Information retrievalDatabase structures thereforFile system structures therefor
  • G06F 21/62 - Protecting access to data via a platform, e.g. using keys or access control rules
  • G06F 16/33 - Querying
  • G06F 16/951 - IndexingWeb crawling techniques
  • H04L 9/00 - Arrangements for secret or secure communicationsNetwork security protocols

14.

METHOD AND DEVICE FOR DETECTING COMPROMISE OF A TARGET BY A SIDE ATTACK

      
Application Number FR2019051544
Publication Number 2020/012083
Status In Force
Filing Date 2019-06-24
Publication Date 2020-01-16
Owner WALLIX (France)
Inventor
  • Tan, Meng
  • Adda, Serge

Abstract

Method for detecting a side attack of a target (3) by a user comprising a step of recording (E) data relating to a so-called sensitive file, said sensitive file being a configuration file of the target; a step of primary connection (C1) of the user on an agent gateway (2) to establish a secondary connection (C2) of the agent gateway on the target; a step of verification (C) of the integrity of the sensitive file, subsequently to the step of secondary connection of the agent gateway on the target and when the integrity of the sensitive file is determined as compromised by the step of verification of the integrity of the sensitive file, a step of detection (D) of a side attack of the target by the user.

IPC Classes  ?

  • G06F 21/55 - Detecting local intrusion or implementing counter-measures

15.

Method for end-to-end transmission of a piece of encrypted digital information, application of this method and object implementing this method

      
Application Number 16476823
Grant Number 11265298
Status In Force
Filing Date 2017-12-29
First Publication Date 2019-11-28
Grant Date 2022-03-01
Owner Wallix (France)
Inventor Binsztok, Henri

Abstract

A method for end-to-end transmission of a piece of encrypted digital information includes the following steps: selection, on the computer equipment of the transmitter, of a piece of digital information and a digital identifier of the recipient; temporary encryption of the piece of digital information by execution of a local encryption application on the computer equipment with the private key of the sender; decryption of the piece of information on the equipment of the sender and encryption of the piece of information with the public key of the recipient; transmission to the recipient, by the computer equipment, from the sender, of the piece of digital information encrypted with the public key of the sender, optionally by the intermediary of the transactional platform; and decryption by the computer equipment of the recipient of the piece of information with the public key of the sender.

IPC Classes  ?

  • H04L 29/06 - Communication control; Communication processing characterised by a protocol
  • H04L 9/00 - Arrangements for secret or secure communicationsNetwork security protocols
  • H04L 9/08 - Key distribution
  • H04L 51/10 - Multimedia information
  • H04W 12/033 - Protecting confidentiality, e.g. by encryption of the user plane, e.g. user’s traffic
  • H04W 12/041 - Key generation or derivation

16.

METHOD AND DEVICE FOR DISPLAYING, ON A LOCAL TERMINAL, AN APPLICATION EXECUTED ON A REMOTE SERVER BY MEANS OF A REMOTE OFFICE PROTOCOL

      
Document Number 03082705
Status Pending
Filing Date 2018-10-31
Open to Public Date 2019-05-31
Owner WALLIX (France)
Inventor
  • Zhou, Raphael
  • Grosjean, Christophe

Abstract

The invention relates to a method for displaying a graphic object which is generated by a remote server (2041, 2042) in a local window which is displayed on a display device, the local terminal communicating with the server via a proxy gateway (206) for the remote office protocol, the gateway establishing a connection (2061, 2062) between the terminal and the server, the connection comprising a primary connection (2061p) which is established between the local terminal and the proxy gateway of the remote application type, and a secondary connection (2061s, 2062s) which is established between the proxy gateway and the remote server, comprising a step (E1) of detecting the type of secondary connection and a step (E3), carried out by the proxy gateway, of converting data which are from the remote server, and which relate to a local window of the office type, into data which are intended for the local terminal and which relate to a local window of the application type.

IPC Classes  ?

  • G06F 9/451 - Execution arrangements for user interfaces

17.

METHOD AND DEVICE FOR DISPLAYING, ON A LOCAL TERMINAL, AN APPLICATION EXECUTED ON A REMOTE SERVER BY MEANS OF A REMOTE OFFICE PROTOCOL

      
Application Number FR2018052702
Publication Number 2019/102088
Status In Force
Filing Date 2018-10-31
Publication Date 2019-05-31
Owner WALLIX (France)
Inventor
  • Zhou, Raphaël
  • Grosjean, Christophe

Abstract

The invention relates to a method for displaying a graphic object which is generated by a remote server (2041, 2042) in a local window which is displayed on a display device, the local terminal communicating with the server via a proxy gateway (206) for the remote office protocol, the gateway establishing a connection (2061, 2062) between the terminal and the server, the connection comprising a primary connection (2061p) which is established between the local terminal and the proxy gateway of the remote application type, and a secondary connection (2061s, 2062s) which is established between the proxy gateway and the remote server, comprising a step (E1) of detecting the type of secondary connection and a step (E3), carried out by the proxy gateway, of converting data which are from the remote server, and which relate to a local window of the office type, into data which are intended for the local terminal and which relate to a local window of the application type.

IPC Classes  ?

  • G06F 9/451 - Execution arrangements for user interfaces

18.

Data Peps

      
Application Number 1428091
Status Registered
Filing Date 2018-07-02
Registration Date 2018-07-02
Owner WALLIX (France)
NICE Classes  ?
  • 09 - Scientific and electric apparatus and instruments
  • 16 - Paper, cardboard and goods made from these materials
  • 35 - Advertising and business services
  • 42 - Scientific, technological and industrial services, research and design

Goods & Services

Safety tokens [encryption devices]; privacy protection software; interactive software for computers for the exchange of information; software for commercial use; application software for cloud computing services; computer application software; computer software for keeping email secure; security software; downloadable security software; software for encryption; downloadable software from global computer networks; downloadable cloud software; downloadable software for data transmission. Computer software manuals; computer software manuals. Wholesale services for computer software; advertising; presentation of goods on all communication media, for retail sale; document reproduction. Data encryption services; software development; software development (design); updating of software; software as a service (SaaS).

19.

METHOD FOR ACCESSING A SECURE COMPUTER RESOURCE BY A COMPUTER APPLICATION

      
Document Number 03054991
Status Pending
Filing Date 2018-01-26
Open to Public Date 2018-09-13
Owner WALLIX (France)
Inventor Adda, Serge

Abstract

The present invention concerns a method for accessing a secure computer resource (3) by a computer application (1) having no human-machine interaction for inputting authentication information, comprising: a) a first initialisation step comprising the creation of a temporary cryptographic key consisting of applying a cryptographic process to a plurality of information that is invariant over time and of encrypting, using the thus calculated key, authentication data of an account authorised to access a vault with passwords and b) steps for automatic access by said application to said secure computer resource consisting of creating a temporary cryptographic key consisting of applying a cryptographic process to said plurality of information that is invariant over time, reading the credentials file created during the initialisation step and decrypting said credentials file with said temporary cryptographic key calculated in the preceding step, then transferring, to the calling application, the data coming from said computer resource.

IPC Classes  ?

20.

METHOD FOR ACCESSING A SECURE COMPUTER RESOURCE BY A COMPUTER APPLICATION

      
Application Number FR2018050183
Publication Number 2018/162810
Status In Force
Filing Date 2018-01-26
Publication Date 2018-09-13
Owner WALLIX (France)
Inventor Adda, Serge

Abstract

The present invention concerns a method for accessing a secure computer resource (3) by a computer application (1) having no human-machine interaction for inputting authentication information, comprising: a) a first initialisation step comprising the creation of a temporary cryptographic key consisting of applying a cryptographic process to a plurality of information that is invariant over time and of encrypting, using the thus calculated key, authentication data of an account authorised to access a vault with passwords and b) steps for automatic access by said application to said secure computer resource consisting of creating a temporary cryptographic key consisting of applying a cryptographic process to said plurality of information that is invariant over time, reading the credentials file created during the initialisation step and decrypting said credentials file with said temporary cryptographic key calculated in the preceding step, then transferring, to the calling application, the data coming from said computer resource.

IPC Classes  ?

21.

Method for secure connection from a client computer device to a computer resource

      
Application Number 15756866
Grant Number 10594662
Status In Force
Filing Date 2016-09-20
First Publication Date 2018-08-30
Grant Date 2020-03-17
Owner WALLIX (France)
Inventor
  • Zhou, Raphaël
  • Adda, Serge

Abstract

The application relates to a method for secure connection from a client computer device to a target computer resource comprising a server, comprising the following steps: the emission of a session-opening request by an application installed on the client station, leading to the creation of a primary session between the client station and the proxy gateway, the request containing either the identifier of the target server or the identifier of the target application; and the opening of a session between the proxy gateway and the server. The request-emission step is implemented by the prior opening of a primary session [RDP] between the client station and the proxy gateway by the transmission of a message containing the identifier of the target server or the identifier of the target application.

IPC Classes  ?

  • H04L 29/06 - Communication control; Communication processing characterised by a protocol
  • G06F 16/955 - Retrieval from the web using information identifiers, e.g. uniform resource locators [URL]

22.

METHOD FOR INFORMATION RETRIEVAL IN AN ENCRYPTED CORPUS STORED ON A SERVER

      
Document Number 03050353
Status Pending
Filing Date 2018-02-05
Open to Public Date 2018-08-23
Owner WALLIX (France)
Inventor Binsztok, Henri

Abstract

The invention relates to a method for information retrieval in an encrypted corpus stored on a server, from a digital request calculated on a customer device, containing a sequence of terms, said method comprising the following steps: encryption of said request (20) on a customer computer device (1) and transmission of same to a database (3) management server (1); and homomorphic calculation, on the server, of the encrypted response (41) to the encrypted request (40) recorded on the server (2), characterised in that it comprises an additional requesting step performed on the customer device (1), for adding said identifiers of the data contained in said encrypted response (50) and in the index df_A (13) recorded on the customer device (1); and presentation of the result in an ordered form of the documents, in application of the processing of the previous step. The invention also relates to a method for preparing a requestable base and to a method for information retrieval in an encrypted corpus.

IPC Classes  ?

  • G06F 16/901 - IndexingData structures thereforStorage structures
  • G06F 16/903 - Querying
  • G06F 21/62 - Protecting access to data via a platform, e.g. using keys or access control rules

23.

METHOD FOR INFORMATION RETRIEVAL IN AN ENCRYPTED CORPUS STORED ON A SERVER

      
Application Number FR2018050276
Publication Number 2018/150119
Status In Force
Filing Date 2018-02-05
Publication Date 2018-08-23
Owner WALLIX (France)
Inventor Binsztok, Henri

Abstract

The invention relates to a method for information retrieval in an encrypted corpus stored on a server, from a digital request calculated on a customer device, containing a sequence of terms, said method comprising the following steps: encryption of said request (20) on a customer computer device (1) and transmission of same to a database (3) management server (1); and homomorphic calculation, on the server, of the encrypted response (41) to the encrypted request (40) recorded on the server (2), characterised in that it comprises an additional requesting step performed on the customer device (1), for adding said identifiers of the data contained in said encrypted response (50) and in the index df_A (13) recorded on the customer device (1); and presentation of the result in an ordered form of the documents, in application of the processing of the previous step. The invention also relates to a method for preparing a requestable base and to a method for information retrieval in an encrypted corpus.

IPC Classes  ?

  • G06F 17/30 - Information retrieval; Database structures therefor
  • H04L 9/00 - Arrangements for secret or secure communicationsNetwork security protocols

24.

METHOD FOR END-TO-END TRANSMISSION OF A PIECE OF ENCRYPTED DIGITAL INFORMATION, APPLICATION OF THIS METHOD AND OBJECT IMPLEMENTING THIS METHOD

      
Document Number 03047855
Status Pending
Filing Date 2017-12-29
Open to Public Date 2018-07-19
Owner WALLIX (France)
Inventor Binsztok, Henri

Abstract

The present invention concerns a method for end-to-end transmission of a piece of encrypted digital information, comprising the following steps: selection, on the computer equipment (1, 11) of the transmitter, of a piece of digital information and a digital identifier of the recipient temporary encryption of said piece of digital information by execution of a local encryption application on the computer equipment (1, 11) with the private key of the sender decryption of said piece of information on the equipment (1, 11) of the sender and encryption of said piece of information with the public key of the recipient transmission to the recipient, by the computer equipment (1, 11), from the sender, of the piece of digital information encrypted with the public key of the sender, optionally by the intermediary of the transactional platform (20), and decryption by the computer equipment of the recipient of the piece of information with the public key of the sender. The invention also concerns the application of this method and a connected object implementing the method.

IPC Classes  ?

  • H04L 9/30 - Public key, i.e. encryption algorithm being computationally infeasible to invert and users' encryption keys not requiring secrecy
  • H04L 51/00 - User-to-user messaging in packet-switching networks, transmitted according to store-and-forward or real-time protocols, e.g. e-mail
  • H04L 51/04 - Real-time or near real-time messaging, e.g. instant messaging [IM]
  • H04L 51/10 - Multimedia information
  • H04L 67/06 - Protocols specially adapted for file transfer, e.g. file transfer protocol [FTP]
  • H04L 67/12 - Protocols specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks
  • H04W 12/04 - Key management, e.g. using generic bootstrapping architecture [GBA]

25.

METHOD FOR END-TO-END TRANSMISSION OF A PIECE OF ENCRYPTED DIGITAL INFORMATION, APPLICATION OF THIS METHOD AND OBJECT IMPLEMENTING THIS METHOD

      
Application Number FR2017053867
Publication Number 2018/130761
Status In Force
Filing Date 2017-12-29
Publication Date 2018-07-19
Owner WALLIX (France)
Inventor Binsztok, Henri

Abstract

The present invention concerns a method for end-to-end transmission of a piece of encrypted digital information, comprising the following steps: • selection, on the computer equipment (1, 11) of the transmitter, of a piece of digital information and a digital identifier of the recipient • temporary encryption of said piece of digital information by execution of a local encryption application on the computer equipment (1, 11) with the private key of the sender • decryption of said piece of information on the equipment (1, 11) of the sender and encryption of said piece of information with the public key of the recipient • transmission to the recipient, by the computer equipment (1, 11), from the sender, of the piece of digital information encrypted with the public key of the sender, optionally by the intermediary of the transactional platform (20), and • decryption by the computer equipment of the recipient of the piece of information with the public key of the sender. The invention also concerns the application of this method and a connected object implementing the method.

IPC Classes  ?

  • H04L 29/06 - Communication control; Communication processing characterised by a protocol
  • H04L 9/08 - Key distribution
  • H04L 9/32 - Arrangements for secret or secure communicationsNetwork security protocols including means for verifying the identity or authority of a user of the system
  • H04W 4/14 - Short messaging services, e.g. short message service [SMS] or unstructured supplementary service data [USSD]
  • H04W 12/02 - Protecting privacy or anonymity, e.g. protecting personally identifiable information [PII]
  • H04W 12/04 - Key management, e.g. using generic bootstrapping architecture [GBA]
  • H04L 29/08 - Transmission control procedure, e.g. data link level control procedure
  • H04L 12/58 - Message switching systems

26.

INTEGRATION OF A STANDARD NETWORK PROTOCOL LAYER IN A WEB BROWSER BY COMPILATION TO WEBASSEMBLY AND USE OF A WEBSOCKET

      
Application Number FR2017053037
Publication Number 2018/096232
Status In Force
Filing Date 2017-11-07
Publication Date 2018-05-31
Owner WALLIX (France)
Inventor
  • Grosjean, Christophe
  • Adda, Serge

Abstract

Integration of a standard network protocol layer in a Web browser by compilation to Webassembly and use of a Websocket. The invention relates to a method for connecting a local client device (3) to a remote computing resource (1), by establishing a computing session in accordance with a standard protocol consisting in: - executing on the client device a Web browsing application (4) - opening a first tunnel [websocket] with a server GATEWAY (2) - said opening of the first tunnel between the client device and the GATEWAY commanding the opening of a network connection with said remote resource. The Web application executed on the local client calculates data packets in accordance with a standard protocol (RDP or SSH for example) and commands the transmission of said data packets to the remote resource in the native format of said protocol, without transcoding or transformation other than the standard processings of websockets, by way of the server gateway (Proxy websocket) ensuring the transfer without modification of the packet received from the client device, to the remote server.

IPC Classes  ?

  • H04L 29/08 - Transmission control procedure, e.g. data link level control procedure
  • G06F 9/00 - Arrangements for program control, e.g. control units
  • G06F 17/30 - Information retrieval; Database structures therefor

27.

INTEGRATION OF A STANDARD NETWORK PROTOCOL LAYER IN A WEB BROWSER BY COMPILATION TO WEBASSEMBLY AND USE OF A WEBSOCKET

      
Document Number 03039277
Status Pending
Filing Date 2017-11-07
Open to Public Date 2018-05-31
Owner WALLIX (France)
Inventor
  • Grosjean, Christophe
  • Adda, Serge

Abstract

Integration of a standard network protocol layer in a Web browser by compilation to Webassembly and use of a Websocket. The invention relates to a method for connecting a local client device (3) to a remote computing resource (1), by establishing a computing session in accordance with a standard protocol consisting in: - executing on the client device a Web browsing application (4) - opening a first tunnel [websocket] with a server GATEWAY (2) - said opening of the first tunnel between the client device and the GATEWAY commanding the opening of a network connection with said remote resource. The Web application executed on the local client calculates data packets in accordance with a standard protocol (RDP or SSH for example) and commands the transmission of said data packets to the remote resource in the native format of said protocol, without transcoding or transformation other than the standard processings of websockets, by way of the server gateway (Proxy websocket) ensuring the transfer without modification of the packet received from the client device, to the remote server.

IPC Classes  ?

  • G06F 9/00 - Arrangements for program control, e.g. control units
  • H04L 12/66 - Arrangements for connecting between networks having differing types of switching systems, e.g. gateways
  • H04L 67/02 - Protocols based on web technology, e.g. hypertext transfer protocol [HTTP]
  • H04L 67/08 - Protocols specially adapted for terminal emulation, e.g. Telnet
  • H04L 67/56 - Provisioning of proxy services

28.

Secure transfer of authentication information

      
Application Number 15554178
Grant Number 10498733
Status In Force
Filing Date 2016-03-03
First Publication Date 2018-03-22
Grant Date 2019-12-03
Owner Wallix (France)
Inventor
  • Zhou, Raphaël
  • Adda, Serge

Abstract

A secure method connects to an application run on a server from a client computer device, by a user who does not have the authentication data of the account declared in the application, the account including at least one proxy ID. The disclosure also relates to the application and associated authentication data, implementing a proxy [mandatary gateway] including a memory for recording, for each user declared by a primary account comprising at least one user ID, the list of resource targets C and accounts to which the user has access.

IPC Classes  ?

  • G06F 7/04 - Identity comparison, i.e. for like or unlike values
  • G06F 15/16 - Combinations of two or more digital computers each having at least an arithmetic unit, a program unit and a register, e.g. for a simultaneous processing of several programs
  • G06F 17/30 - Information retrieval; Database structures therefor
  • H04L 29/06 - Communication control; Communication processing characterised by a protocol
  • G06F 21/41 - User authentication where a single sign-on provides access to a plurality of computers
  • G06F 21/44 - Program or device authentication

29.

METHOD FOR SUPPLYING A SECURE CONNECTION PROXY

      
Document Number 03025659
Status Pending
Filing Date 2017-07-20
Open to Public Date 2018-01-25
Owner WALLIX (France)
Inventor
  • Pinson, Eric
  • Adda, Serge

Abstract

The present invention relates to a method for automatically supplying a secure connection proxy (3) with remote targets (37) on the basis of privileged account data (32), comprising: - a step of exploring, by a robot, at least one domain for identifying the privileged accounts (32); - a step of filtering the privileged accounts (32) on the basis of criteria; - steps of extracting characteristics from identified privileged accounts (32); - a step of supplying the proxy (3) with the gathered data.

IPC Classes  ?

30.

METHOD FOR SUPPLYING A SECURE CONNECTION PROXY

      
Application Number FR2017051999
Publication Number 2018/015681
Status In Force
Filing Date 2017-07-20
Publication Date 2018-01-25
Owner WALLIX (France)
Inventor
  • Pinson, Eric
  • Adda, Serge

Abstract

The present invention relates to a method for automatically supplying a secure connection proxy (3) with remote targets (37) on the basis of privileged account data (32), comprising: - a step of exploring, by a robot, at least one domain for identifying the privileged accounts (32); - a step of filtering the privileged accounts (32) on the basis of criteria; - steps of extracting characteristics from identified privileged accounts (32); - a step of supplying the proxy (3) with the gathered data.

IPC Classes  ?

  • H04L 29/06 - Communication control; Communication processing characterised by a protocol
  • G06F 21/62 - Protecting access to data via a platform, e.g. using keys or access control rules

31.

METHOD FOR SECURE CONNECTION FROM A CLIENT COMPUTER DEVICE TO A COMPUTER RESOURCE

      
Document Number 02997495
Status In Force
Filing Date 2016-09-20
Open to Public Date 2017-03-30
Grant Date 2023-10-03
Owner WALLIX (France)
Inventor
  • Adda, Serge
  • Zhou, Raphael

Abstract

le invention relates to a method for secure connection, from a client computer device to a target computer resource comprising a server, comprising the following steps: the emission of a session-opening request by an application installed on the client station, leading to the creation of a primary session between the client station and the proxy gateway, said request containing either the identifier of the target server or the identifier of the target application; and the opening of a session between said proxy gateway and said server. The request-emission step is implemented by the prior opening of a primary session [RDP] between the client station and the proxy gateway by the transmission of a message containing the identifier of the target server or the identifier of the target application.

IPC Classes  ?

  • H04L 67/14 - Session management
  • H04L 67/51 - Discovery or management thereof, e.g. service location protocol [SLP] or web services
  • H04L 67/5682 - Policies or rules for updating, deleting or replacing the stored data

32.

METHOD FOR SECURE CONNECTION FROM A CLIENT COMPUTER DEVICE TO A COMPUTER RESOURCE

      
Application Number FR2016052372
Publication Number 2017/051104
Status In Force
Filing Date 2016-09-20
Publication Date 2017-03-30
Owner WALLIX (France)
Inventor
  • Adda, Serge
  • Zhou, Raphaël

Abstract

The invention relates to a method for secure connection, from a client computer device to a target computer resource comprising a server, comprising the following steps: the emission of a session-opening request by an application installed on the client station, leading to the creation of a primary session between the client station and the proxy gateway, said request containing either the identifier of the target server or the identifier of the target application; and the opening of a session between said proxy gateway and said server. The request-emission step is implemented by the prior opening of a primary session [RDP] between the client station and the proxy gateway by the transmission of a message containing the identifier of the target server or the identifier of the target application.

IPC Classes  ?

  • H04L 29/06 - Communication control; Communication processing characterised by a protocol
  • H04L 29/08 - Transmission control procedure, e.g. data link level control procedure

33.

SECURE TRANSFER OF AUTHENTICATION INFORMATION

      
Application Number FR2016050482
Publication Number 2016/139427
Status In Force
Filing Date 2016-03-03
Publication Date 2016-09-09
Owner WALLIX (France)
Inventor
  • Adda, Serge
  • Zhou, Raphaël

Abstract

The invention relates to a secure method for connection to an application run on a server from a client computer device, by a user who does not have the authentication data of the account declared in said application, said account comprising at least one proxy ID. The invention also relates to the application and associated authentication data, implementing a proxy [mandatary gateway] comprising a memory for recording, for each user declared by a primary account comprising at least one user ID, the list of resource targets C and accounts to which said user has access.

IPC Classes  ?

  • G06F 21/41 - User authentication where a single sign-on provides access to a plurality of computers
  • H04L 29/06 - Communication control; Communication processing characterised by a protocol

34.

SECURE TRANSFER OF AUTHENTICATION INFORMATION

      
Document Number 02977899
Status In Force
Filing Date 2016-03-03
Open to Public Date 2016-09-09
Grant Date 2021-11-16
Owner WALLIX (France)
Inventor
  • Adda, Serge
  • Zhou, Raphael

Abstract

The invention relates to a secure method for connection to an application run on a server from a client computer device, by a user who does not have the authentication data of the account declared in said application, said account comprising at least one proxy ID. The invention also relates to the application and associated authentication data, implementing a proxy [mandatary gateway] comprising a memory for recording, for each user declared by a primary account comprising at least one user ID, the list of resource targets C and accounts to which said user has access.

IPC Classes  ?

  • H04L 12/12 - Arrangements for remote connection or disconnection of substations or of equipment thereof
  • H04L 67/56 - Provisioning of proxy services

35.

WALLIX

      
Application Number 008486557
Status Registered
Filing Date 2009-08-12
Registration Date 2010-03-16
Owner WALLIX (France)
NICE Classes  ?
  • 09 - Scientific and electric apparatus and instruments
  • 35 - Advertising and business services
  • 39 - Transport, packaging, storage and travel services
  • 42 - Scientific, technological and industrial services, research and design
  • 45 - Legal and security services; personal services for individuals.

Goods & Services

Computer software; Software; Computer software for providing security on networks, the internet, extranets and computers; Computer software for providing security for online transactions; Computer software for online identity protection, privacy control and parental control; Computer software for preventing and diagnosing computer problems; computer software for providing intrusion detection and prevention; Computer software for scanning, detecting and eliminating viruses, spam, advertising messages, spyware and other malware; Computer antivirus software, Anti-spam software, firewalls, filtering tools; computer software for use in the monitoring and control of computer and online activity; Computer software for fraud protection; Computer software and downloadable computer software, namely, utility software; Packaged open source software; Certification software for data recording and storage in the field of computer security; Software for automating the archiving process of physical and/or electronic data; Logging and/or traceability software in the field of the transmission, securing and archiving of physical and/or electronic data; Computer software for securing and/or encrypting physical and/or electronic data; Manual and/or automatic indexing software; Display software for secure, multi-format files; Computer search engine software; Apparatus for recording, transmission or reproduction of text, sound or images; Digital, magnetic and optical recording media; Digital, magnetic and optical data carriers; Time stamping apparatus; Software; Apparatus and instruments for recordal, storage, processing, analysis, transmission, distribution and/or display of data; security solution; Computer programs for accessing computer networks, wireless networks and the Internet. Reproduction of physical and/or electronic documents; Collection of data in a master file, systematic ordering of data in a master file, Computerised file management and computer database management; Commercial or industrial management assistance, Data searches in computerised files; Business investigations and research; Gathering of information; Administrative management of a computer security deployment and supervision centre; Setting up and administrative management of assistance procedures; Provision of commercial information via the Internet concerning products and services to enable customers to make an informed choice when purchasing those products and services; Dissemination of advertising matter and advertising materials (leaflets, prospectuses, printed matter), outdoor advertising; Publicity columns preparation, updating of advertising material, reproduction of documents; Rental of advertising time on all means of communication, all these services being in the field of computer security; Updating of databases. Secure preservation of data media or documents stored electronically; Information relating to storage and archiving in the field of data security. Consultancy in the field of computers; Computer assistance in the field of computer and data security; Technical support and engineering relating to computer software and computer security; Updating of computer software for others; Computer diagnostic services; Computer services, namely, data recovery services; Technical support services, namely, troubleshooting of computer hardware and software problems; Installation of computer software; Computer programming; Network and Internet security services; Technical consultation in the field of computer software installation and maintenance; Consulting services in the field of design, selection, implementation and use of computer hardware and software systems for others; Design, creation, installation, development, upgrade and maintenance of computer software; Providing information in the field of network and Internet security; Providing of expertise, Expertise relating to the industrialisation of solutions based on free software and open source development; Online technical support in the field of computers, computer software and computer systems; Computer security services, Monitoring the computer systems of others for technical purposes; Project studies in the field of computer security; Studies relating to risks and prevention in the field of computer security; Setting up and management of assistance procedures for events affecting software, databases, computers and computer security; Setting up of platforms for the deployment of remote secure systems and architectures; Providing information in the field of computer and online security services, via computer networks, wireless networks and the Internet; Monitoring of computer systems for security purposes; Providing IT threat management systems, namely monitoring and tracking vulnerability and problems relating to software product security on the internet and on computer networks. Identity theft protection services, namely, fraud prevention in the form of personal and financial information monitoring.