Invention Grant
- Patent Title: Token scope reduction
-
Application No.: US14942195Application Date: 2015-11-16
-
Publication No.: US10104084B2Publication Date: 2018-10-16
- Inventor: Andrew Biggs , Shaun Cooley , Matt Miller , Hua Cui , Ian Remmel
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Edell, Shapiro & Finnan, LLC
- Main IPC: G06F7/04
- IPC: G06F7/04 ; H04L29/06 ; G06F21/33

Abstract:
Techniques are provided for augmenting the capabilities of the standard OAuth2 authorization framework in such a way as to allow clients to consume the services of multiple resource servers residing in disjoint security domains while requiring only a single one-time user authentication. An access token that provides access to resource services distributed across a plurality of security domains is partitioned into a plurality of reduced-scope access tokens. Each reduced-scope access token is limited to a subset of authorization scopes of the access token, providing access to a resource service in a particular security domain based upon the subset.
Public/Granted literature
- US20170034172A1 TOKEN SCOPE REDUCTION Public/Granted day:2017-02-02
Information query