首页> 外国专利> Integration of a non-token-based relying party into a token-based information card system

Integration of a non-token-based relying party into a token-based information card system

机译:将基于非令牌的依赖方集成到基于令牌的信息卡系统中

摘要

An accessor function (215) interfaces among a client (105, 205), a relying party (130, 210), and an identity provider (135). The identity provider can "manage" personal (i.e., self-asserted) information cards (320, 405, 410) on behalf of a user, making the personal information cards available on clients on which the personal information cards are not installed. The client can be an untrusted client (205), vulnerable to attacks such as key logging, screen capture, and memory interrogation. The accessor function can also be asked as a proxy for the relying party in terms of invoking and using the information card system, for use with legacy relying parties, by identifying (805) a request of a resource of a legacy relying party (210) received from a client (105, 205), the legacy relying party being a relying party that does not process security tokens (160); requesting (810) the security token (160) from the client (105, 205) by the accessor function (215); and using (815) the security token (160) by the accessor function on behalf of the user to access the resource.
机译:访问器功能(215)在客户端(105、205),依赖方(130、210)和身份提供者(135)之间接口。身份提供者可以代表用户“管理”个人(即,自我主张)信息卡(320、405、410),从而使个人信息卡在未安装个人信息卡的客户端上可用。客户端可以是不受信任的客户端(205),容易受到诸如密钥记录,屏幕捕获和内存询问之类的攻击。通过调用(210)遗留信赖方的资源请求(210),还可以要求访问者功能作为信赖方的代理,以调用和使用信息卡系统,供遗留信赖方使用。从客户端(105、205)接收到的消息,所述传统依赖方是不处理安全令牌的依赖方(160);通过访问器功能(215)从客户端(105、205)请求(810)安全令牌(160);并由访问者功能代表用户使用(815)安全令牌(160)访问资源。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号