摘要:
Methods, systems, and computer program products are disclosed that give entities flexibility to implement custom authentication methods of other entities for authentication of a principal in a federation by authenticating the principal by an identity provider according to a service provider's authentication policy and recording in session data of the identity provider an authentication credential satisfying the service provider's authentication policy. Authentication of a principal in a federation is also carried out by authenticating the principal by the identity provider according to an identity provider's authentication policy. Authentication of a principal in a federation is further carried out by receiving in the identity provider an authentication request from the service provider, the authentication request specifying the service provider's authentication policy.
摘要:
A method, an apparatus, a system, and a computer program product are presented for allowing an administrative user to provide help, support, or assistance to other users within a computing environment. An administrator obtains a username of a user who requires assistance through some means. The administrator belongs to a special group of users that is allowed to invoke a switch-user function, which obtains a comprehensive version of that user's identity, e.g., security credentials, while maintaining a session. With respect to applications and systems within a computing environment, the administrator's session will have the attributes of the assumed user identity as if the administrator had logged in with that user's authentication information. The administrator then accesses resources while impersonating that user in order to assist that user or to find a problem.
摘要:
A method and system is presented to parse a WSDL description and build a hierarchical protected object namespace for authorization of access to the resource, wherein the protected object namespace is based on the abstract part of a WSDL but can be used to assist in authorization decisions for multiple different concrete bindings of this WSDL, wherein the concrete binding/request is based on the WS-Addressing endpoint reference.
摘要:
A linerless label system which utilizes a substrate provided in roll form and which is printed on one side with an image overcoated with an adhesive. The opposite surface of the substrate has release characteristics. The web is fed across the surface of an anvil plate. A die engages the anvil plate, cuts the label from the web which label is then transferred to the surface of an item to be labeled, such as a plastic container. Intermittently, a wiper blade sweeps across the surface of the die to prevent the labels from sticking to the die edge. Preferably, the wiper blade carries a lubricant such as a silicon-based grease.