发明名称 |
Managing single sign-ons between different entities |
摘要 |
The disclosure generally describes computer-implemented methods, software, and systems for cloud-based single sign-on (SSO) capabilities. A computer-implemented method includes operations for identifying a first system for single sign-on capabilities, identifying a second system disparate from the first system for providing a single sign-on capability with the first system through a cloud-based SSO configuration manager, automatically accessing metadata associated with the sign-on information of the second system, the set of metadata identifying sign-on-related information for sharing at least one credential/certificate for logging in to the second system, using the metadata to obtain an authorization for a single sign-on between the first and second systems, receiving a request from the first system for authorization at the second system, and, in response to the request, providing the authorization and creating a cloud-based SSO system that includes the first and second systems. |
申请公布号 |
US8955080(B2) |
申请公布日期 |
2015.02.10 |
申请号 |
US201213708080 |
申请日期 |
2012.12.07 |
申请人 |
SAP SE |
发明人 |
Brunswig Frank;Dell Peter;Herter Klaus;Said Bare |
分类号 |
H04L29/06;G06F21/41;G06F21/31 |
主分类号 |
H04L29/06 |
代理机构 |
Fish & Richardson P.C. |
代理人 |
Fish & Richardson P.C. |
主权项 |
1. A computer-implemented method executed by one or more processors, the method comprising:
identifying a first system for single sign-on capabilities; identifying a second system disparate from the first system for providing a single sign-on capability with the first system through a cloud-based single sign-on (SSO) configuration manager; automatically accessing metadata associated with the sign-on information of the second system, the set of metadata identifying sign-on-related information for sharing at least one credential/certificate for logging in to the second system; using the metadata to obtain an authorization for a single sign-on between the first and second systems; receiving a request from the first system for authorization at the second system; in response to the request, providing the authorization and creating a cloud-based SSO system that includes the first and second systems; monitoring a set of certificates associated with at least one of the first or second systems after creating the SSO system; determining that at least one of the certificates associated with one of the first or second systems is nearing expiration; and alerting a system administrator associated with that system of the nearing certificate expiration. |
地址 |
Walldorf DE |