首页> 外国专利> TECHNOLOGIES FOR TOKEN-BASED AUTHENTICATION AND AUTHORIZATION OF DISTRIBUTED COMPUTING RESOURCES

TECHNOLOGIES FOR TOKEN-BASED AUTHENTICATION AND AUTHORIZATION OF DISTRIBUTED COMPUTING RESOURCES

机译:基于令牌的分布式计算资源认证和授权技术

摘要

Technologies for token-based access authorization to an application program interface (API) include an access management server to receive a service request message from an application executed by a remote computing device. The service request message includes a digitally signed license token previously generated by the access management server and distributed to the remote computing device. The service request message also includes a request from the executed application to access data or a service of the resource server via an exposed API. The access management server verifies the digital signature of the digitally signed license token and generates a digitally signed Security Assertion Markup Language (SAML) token. The digitally signed SAML token is transmitted to the resource server for verification and local caching. The resource server receives the service request message and determines whether access to the requested data or service is authorized based on the locally-cached SAML token.
机译:用于对应用程序接口(API)进行基于令牌的访问授权的技术包括访问管理服务器,以从远程计算设备执行的应用程序接收服务请求消息。服务请求消息包括先前由访问管理服务器生成并分发给远程计算设备的数字签名许可证令牌。服务请求消息还包括来自执行的应用程序的请求,以通过公开的API访问数据或资源服务器的服务。访问管理服务器验证数字签名许可证令牌的数字签名,并生成数字签名安全声明标记语言(SAML)令牌。经过数字签名的SAML令牌被传输到资源服务器以进行验证和本地缓存。资源服务器接收服务请求消息,并基于本地缓存的SAML令牌确定是否授权对请求的数据或服务的访问。

著录项

  • 公开/公告号US2018309746A1

    专利类型

  • 公开/公告日2018-10-25

    原文格式PDF

  • 申请/专利权人 VANTIV LLC;

    申请/专利号US201816010869

  • 发明设计人 SCOTT EDWARD BLASI;

    申请日2018-06-18

  • 分类号H04L29/06;H04L9/32;G06F9/54;G06F21/33;G06F21/10;

  • 国家 US

  • 入库时间 2022-08-21 12:59:28

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号