发明名称 REVOKING SESSIONS USING SIGNALING
摘要 Embodiments are directed to revoking user sessions using signaling. In one scenario, an identity platform operating on a computer system receives an indication indicating that a user's login account has been compromised, where the user's login account has an associated login session and corresponding session artifact that is valid for a specified amount of time. The identity platform generates a signal indicating that the login session is no longer trusted and that the user is to be re-directed to the identity platform to re-authenticate and renew the session artifact and provides the generated signal to various relying parties including at least one relying party that is hosting the login session for the user.
申请公布号 US2016044011(A1) 申请公布日期 2016.02.11
申请号 US201414452726 申请日期 2014.08.06
申请人 Microsoft Corporation 发明人 Gordon Ariel;Devasahayam Samuel;Zhao Lu;Rouskov Yordan;Arewar Parmeshwar;Gopalakrishnan Venkatesh;Subramaniam Sarat Chandra;Miron Titus Constantin
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. At a computer system including at least one processor, a computer-implemented method for revoking user sessions using signaling, the method comprising: an act of receiving, at an identity platform, an indication indicating that a user's login account has been compromised, the user's login account having an associated login session and corresponding session artifact that is valid for a specified amount of time; an act of generating a signal indicating that the login session is no longer trusted and that the user is to be re-directed to the identity platform to re-authenticate and renew the session artifact; and an act of providing the generated signal to one or more relying parties including at least one relying party that is hosting the login session for the user.
地址 Redmond WA US
您可能感兴趣的专利