发明名称 Method of and System for Enforcing Authentication Strength for Remote Portlets
摘要 In a method of and system for enforcing authentication strength for remote portlets, a portlet is provided by a producer portal and consumed as remote portlet by a consumer portal. The producer portal defines an authentication strength level requirement for the portlet. A user requests the remote portlet from the consumer portal. The consumer portal authenticates the user with a particular authentication method that implies a particular authentication strength level. The producer portal authenticates the consumer portal with a particular authentication method that implies a particular authentication strength assertion level. The consumer portal requests the portlet from the producer portal with an assertion of the authentication strength level of the user. The producer portal rejects the request from the consumer portal if the authentication strength level of the user is less than the authentication strength level requirement for the portlet. The producer portal also rejects the request from the consumer portal if the authentication strength assertion level of the consumer portal is not high enough to assert the authentication strength level of the user. The producer portal accepts the request from the consumer portal only if the authentication strength level of the user is not less than the authentication strength level requirement for the portlet and the authentication strength assertion level of the consumer portal is high enough to assert the authentication strength level of the user.
申请公布号 US2009254979(A1) 申请公布日期 2009.10.08
申请号 US20080099188 申请日期 2008.04.08
申请人 BLUM DANIEL;BUCHWALD JAN PAUL;JACOB RICHARD;KUSSMAUL TIMO;THEN OLIVER 发明人 BLUM DANIEL;BUCHWALD JAN PAUL;JACOB RICHARD;KUSSMAUL TIMO;THEN OLIVER
分类号 H04L9/32 主分类号 H04L9/32
代理机构 代理人
主权项
地址
您可能感兴趣的专利