首页> 外国专利> TECHNOLOGIES FOR TOKEN-BASED AUTHENTICATION AND AUTHORIZATION OF DISTRIBUTED COMPUTING RESOURCES

TECHNOLOGIES FOR TOKEN-BASED AUTHENTICATION AND AUTHORIZATION OF DISTRIBUTED COMPUTING RESOURCES

机译:基于令牌的身份验证和分布式计算资源授权的技术

摘要

Technologies for token-based access authorization to an application program interface (API) include an access management server to receive a service request message from an application executed by a remote computing device. The service request message includes a digitally signed license token previously generated by the access management server and distributed to the remote computing device. The service request message also includes a request from the executed application to access data or a service of the resource server via an exposed API. The access management server verifies the digital signature of the digitally signed license token and generates a digitally signed Security Assertion Markup Language (SAML) token. The digitally signed SAML token is transmitted to the resource server for verification and local caching. The resource server receives the service request message and determines whether access to the requested data or service is authorized based on the locally-cached SAML token.
机译:对应用程序接口(API)的令牌基于访问授权的技术包括访问管理服务器,用于从远程计算设备执行的应用程序接收服务请求消息。服务请求消息包括先前由访问管理服务器生成的数字签名的许可证令牌,并分发给远程计算设备。服务请求消息还包括来自所执行的应用程序的请求来经由暴露的API访问数据或资源服务器的服务。 Access Management Server验证数字签名许可证令牌的数字签名,并生成数字签名的安全断言标记语言(SAML)令牌。数字签名的SAML令牌被传输到资源服务器以进行验证和本地缓存。资源服务器接收服务请求消息,并基于本地缓存的SAML令牌确定是否授权对所请求的数据或服务。

著录项

  • 公开/公告号US2021144136A1

    专利类型

  • 公开/公告日2021-05-13

    原文格式PDF

  • 申请/专利权人 WORLDPAY LLC;

    申请/专利号US202117154814

  • 发明设计人 SCOTT EDWARD BLASI;

    申请日2021-01-21

  • 分类号H04L29/06;G06F21/10;H04L9/32;G06F21/33;G06F9/54;

  • 国家 US

  • 入库时间 2022-08-24 18:40:01

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号