首页> 外国专利> HYBRID SINGLE SIGN-ON FOR SOFTWARE APPLICATIONS AND SERVICES USING CLASSIC AND MODERN IDENTITY PROVIDERS

HYBRID SINGLE SIGN-ON FOR SOFTWARE APPLICATIONS AND SERVICES USING CLASSIC AND MODERN IDENTITY PROVIDERS

机译:使用经典和现代身份提供者的软件应用程序和服务的混合单点登录

摘要

An authentication management system receives a resource request directed to a software service, which may require password-based authentication. The system redirects the resource request to an authentication identity provider (IdP), and receives an authentication token generated by the authentication IdP. The redirecting of the resource request comprises transmission of an authentication request, which includes user identity information that can be authenticated by the IdP but does not include a password for the software service. In response to receiving the authentication token, the system causes a shadow account to be created with the software service. For password-based authentication, this may include setting a temporary, random password for the shadow account. The system is then able to generate authenticated connection information (e.g., an authentication cookie) for the software service and transmit it to a client device, which enables the client device to access the software service via an authenticated connection.
机译:认证管理系统接收针对软件服务的资源请求,该资源请求可能需要基于密码的认证。系统将资源请求重定向到身份验证提供者(IdP),并接收由身份验证IdP生成的身份验证令牌。资源请求的重定向包括身份验证请求的传输,该请求包括可以由IdP进行身份验证但不包括软件服务密码的用户身份信息。响应于接收到认证令牌,系统使影子帐户与软件服务一起创建。对于基于密码的身份验证,这可能包括为影子帐户设置临时的随机密码。然后,系统能够生成用于软件服务的认证的连接信息(例如,认证cookie),并将其发送到客户端设备,这使得客户端设备能够经由认证的连接访问软件服务。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号