发明名称 Elevating trust in user identity during RESTful authentication and authorization
摘要 Credentials sent over a back channel during the authentication of a user to a RESTful service can elevate the trust the recipient system can place in the user's identity. The addition of an identity credential of higher strength can increase confidence in user identities electronically presented with a lower strength credential. Attributes from either credential can be used to determine authorization to a protected resource.
申请公布号 US9485248(B2) 申请公布日期 2016.11.01
申请号 US201414506825 申请日期 2014.10.06
申请人 Jericho Systems Corporation 发明人 Schmoyer Timothy;Dufel Michael;Staggs David;Subramanium Vijayababu
分类号 G06F17/30;H04L29/06;G06F21/33 主分类号 G06F17/30
代理机构 代理人
主权项 1. A computer-implemented method of authenticating and authorizing an entity, comprising: receiving, by a RESTful service, a request from an entity, wherein the request is for access to a protected resource; redirecting the entity to a relying party, wherein the relying party facilitates the authentication of the entity and stores a first credential and a SAML credential; receiving, by the RESTful service, the first credential from the relying party, wherein the first credential is received through a front channel; receiving, by the RESTful service, the SAML credential from the relying party, wherein the SAML credential is received through a back channel; authenticating the entity at a level of confidence based on the credential strength of the first credential and based on the credential strength of the SAML credential; and authorizing the entity's access to the protected resource, wherein the authorization is based on attributes contained in the SAML credential.
地址 Dallas TX US