Method and apparatus for issuing a credential for an incident area network

    公开(公告)号:US10104526B2

    公开(公告)日:2018-10-16

    申请号:US15170683

    申请日:2016-06-01

    Abstract: A method and apparatus for issuing an incident-issued credential for an incident area network. One embodiment provides an identity server including an electronic processor configured to receive an agency-issued credential and retrieve a first set of attributes from the agency-issued credential. The electronic processor is also configured to map the first set of attributes to a scope of a service available through an incident area network. The electronic processor is further configured to generate the incident-issued credential for the incident area network including the scope and issue the incident-issued credential to a user device.

    METHOD AND APPARATUS FOR SINGLE SIGN-ON COLLABORATON AMONG MOBILE DEVICES
    14.
    发明申请
    METHOD AND APPARATUS FOR SINGLE SIGN-ON COLLABORATON AMONG MOBILE DEVICES 有权
    移动设备上单点登录协议的方法与装置

    公开(公告)号:US20140189834A1

    公开(公告)日:2014-07-03

    申请号:US13728521

    申请日:2012-12-27

    Abstract: An apparatus for, and method of, single sign-on collaboration among a plurality of mobile devices, includes a server for issuing a first identity token to subsequently authenticate a user of a first of the mobile devices to a service provider, and for generating and sending a collaboration key to the first device based on the first identity token or user authentication. The first device generates and sends a collaboration credential based on the collaboration key to a second device paired with the first device. The server also issues a second identity token to subsequently authenticate to the service provider the user of the second device based on the collaboration credential received from the first device, to support single sign-on collaboration for the user across the plurality of mobile devices.

    Abstract translation: 用于多个移动设备之间的单点登录协作的装置和方法包括用于发布第一身份令牌以随后向服务提供商认证第一移动设备的用户的服务器,以及用于生成和 基于第一身份令牌或用户认证向第一设备发送协作密钥。 第一设备基于协作密钥生成并发送与第一设备配对的第二设备的协作凭证。 服务器还发出第二身份令牌,以随后基于从第一设备接收到的协作凭证向服务提供商验证第二设备的用户,以支持跨多个移动设备的用户的单点登录协作。

    System and method for providing least privilege access in a microservices architecture

    公开(公告)号:US10484379B2

    公开(公告)日:2019-11-19

    申请号:US15461299

    申请日:2017-03-16

    Abstract: System and method of providing administrative access to an endpoint server. In one example, the method includes receiving, at an admin server, a request for performing an admin operation on the endpoint server and a first portion of an admin key from a microservice server. The method also includes receiving, at the admin server, a second portion of the admin key. The method further includes generating, at the admin server, a copy of the admin key based at least in part on the first portion and the second portion of the admin key. The method also includes performing, via the admin server, the admin operation on the endpoint server using the copy of the admin key. The method further includes deleting the copy of the admin key on the admin server after performing the admin operation on the endpoint server.

    Method and apparatus for single sign-on collaboraton among mobile devices
    18.
    发明授权
    Method and apparatus for single sign-on collaboraton among mobile devices 有权
    移动设备之间单点登录协作的方法和设备

    公开(公告)号:US08955081B2

    公开(公告)日:2015-02-10

    申请号:US13728521

    申请日:2012-12-27

    Abstract: An apparatus for, and method of, single sign-on collaboration among a plurality of mobile devices, includes a server for issuing a first identity token to subsequently authenticate a user of a first of the mobile devices to a service provider, and for generating and sending a collaboration key to the first device based on the first identity token or user authentication. The first device generates and sends a collaboration credential based on the collaboration key to a second device paired with the first device. The server also issues a second identity token to subsequently authenticate to the service provider the user of the second device based on the collaboration credential received from the first device, to support single sign-on collaboration for the user across the plurality of mobile devices.

    Abstract translation: 用于多个移动设备之间的单点登录协作的装置和方法包括用于发布第一身份令牌以随后向服务提供商认证第一移动设备的用户的服务器,以及用于生成和 基于第一身份令牌或用户认证向第一设备发送协作密钥。 第一设备基于协作密钥生成并发送与第一设备配对的第二设备的协作凭证。 服务器还发出第二身份令牌,以随后基于从第一设备接收到的协作凭证向服务提供商验证第二设备的用户,以支持跨多个移动设备的用户的单点登录协作。

    SYSTEM AND METHOD FOR SCOPING A USER IDENTITY ASSERTION TO COLLABORATIVE DEVICES
    19.
    发明申请
    SYSTEM AND METHOD FOR SCOPING A USER IDENTITY ASSERTION TO COLLABORATIVE DEVICES 审中-公开
    用于对协作设备进行用户身份识别的系统和方法

    公开(公告)号:US20140189827A1

    公开(公告)日:2014-07-03

    申请号:US13728752

    申请日:2012-12-27

    CPC classification number: H04L63/08 H04L63/0815 H04W12/06

    Abstract: A system and method for enabling a primary and a secondary communication device to share a user identity assertion is presented. The user identity assertion enables the devices to access an application system. The primary and secondary devices are paired to place them in collaboration with each other. The primary device requests an identity provider system to issue a user identity assertion scoped to the primary and secondary communication device. The identity provider system authenticates the primary device and generates the user identity assertion scoped to the primary device and the secondary device identified in the request. The primary communication device receives the user identity assertion and communicates the user identity assertion to the secondary device. The primary device may request the user identity assertion by communicating a user identity assertion scoped to the primary device and a single sign on session cookie or a request for an extension assertion.

    Abstract translation: 提出了一种能够使主要和次要通信设备共享用户身份断言的系统和方法。 用户身份断言使设备能够访问应用系统。 主设备和辅助设备配对,使它们彼此协作。 主设备请求身份提供者系统发布对主要和次要通信设备的用户身份断言。 身份提供者系统对主设备进行身份验证,并生成范围为主设备的用户身份断言和请求中标识的辅助设备。 主要通信设备接收用户身份断言,并将用户身份声明传达给辅助设备。 主设备可以通过传送作用于主设备的用户身份断言和会话cookie上的单一登录或扩展断言的请求来请求用户身份断言。

Patent Agency Ranking