首页> 外国专利> FEDERATED AUTHENTICATION OF CLIENT COMPUTERS IN NETWORKED DATA COMMUNICATIONS SERVICES CALLABLE BY APPLICATIONS

FEDERATED AUTHENTICATION OF CLIENT COMPUTERS IN NETWORKED DATA COMMUNICATIONS SERVICES CALLABLE BY APPLICATIONS

机译:应用程序可调用的联网数据通信服务中客户端计算机的联合身份验证

摘要

A data processing method comprises: using authentication logic of a server computer, establishing a secure socket connection with a client computer; receiving, from the client computer, a request to use a communications service that is implemented at the server computer, and in response to the request, determining that the client computer is unauthenticated; providing a nonce value to the client computer; receiving from the client computer an encrypted identity token that includes the nonce and a user identifier, wherein the identity token has been encrypted using a provider computer and an encryption key of the provider computer, wherein the encryption key is known at the server computer; validating the identity token and obtaining the user identifier therein; creating and storing a session token that is uniquely associated with the client computer and that includes a session identifier, the user identifier, and a binding to the secure socket connection.
机译:一种数据处理方法,包括:使用服务器计算机的认证逻辑,与客户端计算机建立安全套接字连接;从客户端计算机接收使用在服务器计算机上实现的通信服务的请求,并且响应于该请求,确定客户端计算机未被认证;向客户端计算机提供现时值;从客户端计算机接收包括随机数和用户标识符的加密的身份令牌,其中该身份令牌已经使用提供商计算机和提供商计算机的加密密钥进行了加密,其中该加密密钥在服务器计算机处是已知的;验证身份令牌并在其中获得用户标识符;创建并存储与客户端计算机唯一关联的会话令牌,该会话令牌包括会话标识符,用户标识符和对安全套接字连接的绑定。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号