发明名称 Method and system for authentication by defining a demanded level of security
摘要 A computer-implemented method for authentication involves defining a level of trust required for access to a resource independently of any particular authentication mechanism or instance, determining levels of trust associated with a plurality of authentication instances, and selecting and combining two or more of the authentication instances to meet or exceed the required level of trust.
申请公布号 US9083750(B2) 申请公布日期 2015.07.14
申请号 US201313941882 申请日期 2013.07.15
申请人 SAP SE 发明人 Gomez Laurent Y.;Scherfenberg Ivonne
分类号 H04L29/06 主分类号 H04L29/06
代理机构 Schwegman Lundberg & Woessner, P.A. 代理人 Schwegman Lundberg & Woessner, P.A.
主权项 1. A computer-implemented method for authentication of a client device to a server, the method comprising: using one or more computer processors to perform the operations of: determining a demanded level of security for a resource on the server, wherein the demanded level of security is independent of any particular authentication instance and defines level of trust necessary to allow access to the resource on the server; determining, for each of a plurality of authentication instances, an associated server level of trust; determining which of the plurality of authentication instances are available on the client device; selecting at least two authentication instances from the plurality of authentication instances determined to be available on the client device based upon a determination that the combined level of trust associated with the at least two selected authentication instances meets or exceeds the determined demanded level of security for access to the resource on the server, wherein one or more combining operators are utilized to combine authentication instances; and sending a request to the server to utilize the resource, the request comprising information verifying that the computer-implemented client has successfully authenticated utilizing the selected combination of authentication instances, wherein the authentication instances are associated to a reputation which evolves based on a collection of previous experiences associated with determining the server level of trust in the authentication instances.
地址 Walldorf DE