首页> 外国专利> MULTIPLE RESOURCE SERVERS WITH SINGLE, FLEXIBLE, PLUGGABLE OAUTH SERVER AND OAUTH-PROTECTED RESTFUL OAUTH CONSENT MANAGEMENT SERVICE, AND MOBILE APPLICATION SINGLE SIGN ON OAUTH SERVICE

MULTIPLE RESOURCE SERVERS WITH SINGLE, FLEXIBLE, PLUGGABLE OAUTH SERVER AND OAUTH-PROTECTED RESTFUL OAUTH CONSENT MANAGEMENT SERVICE, AND MOBILE APPLICATION SINGLE SIGN ON OAUTH SERVICE

机译:具有单一,灵活,可插拔的OUTH服务器和OUTH保护的RESTful OUTH同意管理服务的多资源服务器,以及在OUTH服务上的移动应用单点登录

摘要

A framework, which conforms to the OAuth standard, involves a generic OAuth authorization server that can be used by multiple resource servers in order to ensure that access to resources stored on those resource servers is limited to access to which the resource owner consents. Each resource server registers, with the OAuth authorization server, metadata for that resource server, indicating scopes that are recognized by the resource server. The OAuth authorization server refers to this metadata when requesting consent from a resource owner on behalf of a client application, so that the consent will be of an appropriate scope. The OAuth authorization server refers to this metadata when constructing an access token to provide to the client application for use in accessing the resources on the resource server. The OAuth authorization server uses this metadata to map issued access tokens to the scopes to which those access tokens grant access.
机译:符合OAuth标准的框架涉及一个通用的OAuth授权服务器,该服务器可以由多个资源服务器使用,以确保对存储在那些资源服务器上的资源的访问仅限于资源所有者同意的访问。每个资源服务器都向OAuth授权服务器注册该资源服务器的元数据,以指示该资源服务器可以识别的范围。当代表客户端应用程序请求资源所有者的同意时,OAuth授权服务器会引用此元数据,以便该同意将具有适当的范围。 OAuth授权服务器在构造访问令牌以提供给客户端应用程序以用于访问资源服务器上的资源时会引用此元数据。 OAuth授权服务器使用此元数据将发出的访问令牌映射到那些访问令牌向其授予访问权限的范围。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号