Invention Grant
- Patent Title: Identity management connecting principal identities to alias identities having authorization scopes
-
Application No.: US15482904Application Date: 2017-04-10
-
Publication No.: US10440024B2Publication Date: 2019-10-08
- Inventor: Ricardo Fernando Feijoo , Thomas Michael Kludy
- Applicant: Citrix Systems, Inc.
- Applicant Address: US FL Fort Lauderdale
- Assignee: Citrix Systems, Inc.
- Current Assignee: Citrix Systems, Inc.
- Current Assignee Address: US FL Fort Lauderdale
- Agency: BainwoodHuang
- Main IPC: H04L9/00
- IPC: H04L9/00 ; H04L29/06

Abstract:
A principal database is described in which each entry includes one principal identity, and one or more alias identities that may each have an authorization scope. Principal identity attributes include a principal identifier and login credentials, and alias identity attributes include an authorization scope and login credentials. Responsive to successfully authenticating the user for a first application (a multiple-identity application), based on the alias identity login credentials, an access token containing both the alias identity attributes and the principal identity attributes is transmitted to the first application, causing the first application to grant a scope of access based on the authorization scope. Responsive to a request to authenticate the user for a second application (a single-identity application), the access token is transmitted to the second application without re-authenticating the user, causing the second application to grant a scope of access based on the principal identifier.
Public/Granted literature
- US20180295135A1 Identity Management Connecting Principal Identities to Alias Identities Having Authorization Scopes Public/Granted day:2018-10-11
Information query