A method includes running on a computer a first operating environment for performing general-purpose operations and a second operating environment, which is configured exclusively for interacting with multiple servers in respective secure communication sessions and is isolated from the first operating environment. Multiple server-specific credentials for authenticating a user of the computer to the respective servers, as well as a single set of master credentials for authenticating the user to the second operating environment, are stored in the second operating environment. A secure communication session is established between the computer and a given server under control of a program running in the second operating environment, by authenticating the user using the master credentials and, responsively to authenticating the user, selecting one of the server-specific credentials and authenticating the user to the given server using the selected server-specific credentials.

Trusted local single sign-on
Application Number
Publication Number
8365266 (B2)
Application Date
March 20, 2008
Publication Date
January 29, 2013
Etay Bogner
Tel Aviv
Blakely Sokoloff Taylor & Zafman
Intel Corporation
H04L 29/06
