Identifying compatible web service policies

    公开(公告)号:US09742640B2

    公开(公告)日:2017-08-22

    申请号:US14148400

    申请日:2014-01-06

    CPC classification number: H04L43/04 H04L12/66 H04L63/102 H04L67/02

    Abstract: Methods, systems, and devices are described for identifying compatible web service policies between a web service and a web service client. A first and second set of one or more identifiers linked to web service policies supported by the web service and web service client may be calculated, respectively. The sets of identifiers may be compared. Using the comparison, a number of common identifiers present in the first set of one or more identifiers linked to the web service policies supported by the web service and the second set of one or more identifiers linked to the web service policies supported by the web service client may be identified. Using the number of common identifiers, a web service policy of the web service compatible with a web service policy of the web service client may be identified.

    Propagating security identity information to components of a composite application
    15.
    发明授权
    Propagating security identity information to components of a composite application 有权
    将安全身份信息传播到组合应用程序的组件

    公开(公告)号:US08973117B2

    公开(公告)日:2015-03-03

    申请号:US14106037

    申请日:2013-12-13

    CPC classification number: H04L63/08 G06F9/461 G06F21/44

    Abstract: Various methods and systems for propagating identity information in a composite application are presented. State data of a composite application, as executed for a particular entity, may be transferred to and stored by a computer-readable storage medium. The state data may include a portion of a set of subject information linked with the entity. A security attribute of the subject may not be present in the portion of the set of subject information in the state data transferred to the non-transitory computer-readable storage medium. After a period of time, such as an hour or a day, the state data of the composite application as executed for the entity may be retrieved and the security attribute of the set of subject information linked with the entity may be determined The composite application may then continue to be executed for the entity.

    Abstract translation: 提出了用于在复合应用中传播身份信息的各种方法和系统。 对于特定实体执行的复合应用的状态数据可以被传送到计算机可读存储介质并由计算机可读存储介质存储。 状态数据可以包括与该实体链接的一组主题信息的一部分。 在传送到非暂时计算机可读存储介质的状态数据中,被摄体的安全属性可能不存在于该组主题信息的部分中。 经过一段时间(例如一小时或一天),可以检索对该实体执行的复合应用的状态数据,并且可以确定与该实体链接的一组主题信息的安全属性。复合应用可以 然后继续为该实体执行。

    ATTACHING WEB SERVICE POLICIES TO A GROUP OF POLICY SUBJECTS

    公开(公告)号:US20170126743A1

    公开(公告)日:2017-05-04

    申请号:US15408760

    申请日:2017-01-18

    Abstract: In one set of embodiments, methods, systems, and apparatus are provided to attach one or more service policies to resources in an enterprise by receiving a first service policy, receiving a first policy attachment that identifies one or more policy attachment attributes of resources in the enterprise, and generate a first global policy attachment that references the first policy attachment and the first service policy. The method can include receiving a request to access a resource including an attribute that matches one of the policy attachment attributes. The method can include determining that the first service policy is an effective policy for the resource based on the matching resource attribute with the policy attachment attribute. The method can include controlling access to the resource responsive to the request using the effective policy.

Patent Agency Ranking