发明授权
US09578014B2 Service profile-specific token attributes and resource server token attribute overriding
有权
服务配置文件特定的令牌属性和资源服务器令牌属性覆盖
- 专利标题: Service profile-specific token attributes and resource server token attribute overriding
- 专利标题(中): 服务配置文件特定的令牌属性和资源服务器令牌属性覆盖
-
申请号: US14266505申请日: 2014-04-30
-
公开(公告)号: US09578014B2公开(公告)日: 2017-02-21
- 发明人: Ajay Sondhi , Ching-Wen Chu , Venkata S. Evani
- 申请人: Oracle International Corporation
- 申请人地址: US CA Redwood Shores
- 专利权人: Oracle International Corporation
- 当前专利权人: Oracle International Corporation
- 当前专利权人地址: US CA Redwood Shores
- 代理机构: Kilpatrick Townsend & Stockton LLP
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
A framework, which conforms to the OAuth standard, involves a generic OAuth authorization server that can be used by multiple resource servers in order to ensure that access to resources stored on those resource servers is limited to access to which the resource owner consents. Each resource server registers, with the OAuth authorization server, metadata for that resource server, indicating scopes that are recognized by the resource server. The OAuth authorization server refers to this metadata when requesting consent from a resource owner on behalf of a client application, so that the consent will be of an appropriate scope. The OAuth authorization server refers to this metadata when constructing an access token to provide to the client application for use in accessing the resources on the resource server. The OAuth authorization server uses this metadata to map issued access tokens to the scopes to which those access tokens grant access.
公开/授权文献
信息查询