US 11,855,984 B2
Method and system of providing secure access to a cloud service in a cloud computing environment
Philipp Bender, Rülzheim (DE); Heiko Osigus, Kandel (DE); and Sven Selle, Nuremberg (DE)
Assigned to Siemens Aktiengesellschaft, Munich (DE)
Filed by Siemens Aktiengesellschaft, Munich (DE)
Filed on Dec. 18, 2020, as Appl. No. 17/126,490.
Application 17/126,490 is a continuation of application No. PCT/EP2019/066220, filed on Jun. 19, 2019.
Claims priority of application No. 18178618 (EP), filed on Jun. 19, 2018.
Prior Publication US 2021/0105274 A1, Apr. 8, 2021
Int. Cl. H04L 9/40 (2022.01); H04L 41/22 (2022.01); H04L 67/00 (2022.01)
CPC H04L 63/0876 (2013.01) [H04L 41/22 (2013.01); H04L 63/0807 (2013.01); H04L 63/102 (2013.01); H04L 67/34 (2013.01)] 17 Claims
OG exemplary drawing
 
1. A method of providing secure access to a cloud service to a tenant of a cloud computing system via applications hosted on a third-party server, the method comprising:
receiving, by the cloud computing system, a request to access a cloud service hosted on the cloud computing system from a tenant device of the tenant, wherein the request comprises a tenant identifier associated with the tenant device and a unique identifier associated with the requested cloud service, wherein the requested cloud service is accessible via an application hosted on the third-party server communicatively coupled to the cloud computing system;
authenticating the tenant device to access the requested cloud service via the application based on the tenant identifier and the unique identifier associated with the cloud service;
generating a ticket indicating that the tenant device is authorized to access the application, wherein the ticket comprises a unique identifier associated with the application associated with the requested cloud service;
transmitting the ticket to the third-party server communicatively coupled to the cloud computing system; and
providing access to the cloud service to the tenant device via the application hosted on the third-party server in response to successful validation of the ticket by the third-party server.