Invention Application
- Patent Title: PROXY-BASED IDENTITY AND ACCESS MANAGEMENT FOR WEB APPLICATIONS
-
Application No.: PCT/US2022/035886Application Date: 2022-07-01
-
Publication No.: WO2023009274A1Publication Date: 2023-02-02
- Inventor: AKHTER, Saeed Javed , SONEFF, Steven
- Applicant: MICROSOFT TECHNOLOGY LICENSING, LLC
- Applicant Address: One Microsoft Way
- Assignee: MICROSOFT TECHNOLOGY LICENSING, LLC
- Current Assignee: MICROSOFT TECHNOLOGY LICENSING, LLC
- Current Assignee Address: One Microsoft Way
- Agency: CHATTERJEE, Aaron C. et al.
- Priority: US17/388,807 2021-07-29
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06F21/33 ; G06F21/62 ; H04L9/32
Abstract:
Techniques described herein are directed to proxies configured to handle identity and access management for a web application. For instance, a first proxy receives requests to the application from a browser. The first proxy redirects the browser to an identity endpoint, which prompts the user to enter authentication credentials for the application. Upon successful authentication, the endpoint provides an access token for accessing web APIs to the first proxy. The first proxy provides the token to a second proxy, which stores the token. The second proxy receives anonymous API calls from the web application to the web APIs. When receiving an anonymous API call, the second proxy obtains the token and inserts it into an outgoing request to the API. Responsive to the API returning a message indicating that the token is invalid, the second proxy communicates with the first proxy to obtain a new token from the endpoint.
Information query