DIGITALLY SIGNING DOCUMENTS USING IDENTITY CONTEXT INFORMATION
    2.
    发明申请
    DIGITALLY SIGNING DOCUMENTS USING IDENTITY CONTEXT INFORMATION 有权
    使用身份识别信息的数字签名文件

    公开(公告)号:US20090319795A1

    公开(公告)日:2009-12-24

    申请号:US12143392

    申请日:2008-06-20

    IPC分类号: H04L9/00

    摘要: Creating a token for use by an entity when digitally signing documents. In a computing environment, a digital identity representation for an entity is accessed. The digital identity representation includes information identifying identity attributes about the entity and capabilities of an identity provider that provides tokens for use by the entity. Context information is accessed. The context information includes information about one or more of which, how or where the attributes for the entity identified in the digital identity representation will be used. A security token is created from the information in the digital identity representation and the context information. The security token makes assertions by the identity provider. The assertions are based on the information in the digital identity representation. The token further includes information related to at least a portion of the context information.

    摘要翻译: 创建一个令牌供实体在数字签署文档时使用。 在计算环境中,访问实体的数字身份表示。 数字身份表示包括识别关于实体的身份属性的信息以及提供令牌以供实体使用的身份提供者的能力。 访问上下文信息。 上下文信息包括关于在数字身份表示中识别的实体的属性的一个或多个,如何或何处被使用的信息。 根据数字身份表示和上下文信息中的信息创建安全令牌。 安全令牌由身份提供者进行断言。 断言是基于数字身份表示中的信息。 令牌还包括与上下文信息的至少一部分相关的信息。

    System and method for managing access points to distributed services
    3.
    发明授权
    System and method for managing access points to distributed services 有权
    用于管理分布式服务的接入点的系统和方法

    公开(公告)号:US07580989B2

    公开(公告)日:2009-08-25

    申请号:US10620803

    申请日:2003-06-30

    IPC分类号: G06F15/167

    摘要: A system and method comprising a client-side manager component that manages access points (such as URLs) to distributed services for client applications. The client application hosts the client-side manager, and specifies criteria for a service. The manager component uses the criteria to query a service registry, such as a UDDI-based registry, and caches the returned list. To use a service, the client calls the manager component on a defined interface, and the manager component returns one of the cached access points. The cached access points may be returned based on an ordering, such as to distribute requests among services. If the service fails, the client calls a failure-related method of the manager component with failure details, and retrieves a new access point. The manager component reports the error to an error handling service, whereby the error information may be used in a quality of service statistic at the service registry.

    摘要翻译: 一种系统和方法,包括管理客户端应用的分布式服务的接入点(例如URL)的客户端管理器组件。 客户端应用程序托管客户端管理器,并指定服务的标准。 管理器组件使用条件来查询服务注册表,例如基于UDDI的注册表,并缓存返回的列表。 要使用服务,客户端在定义的接口上调用管理器组件,并且管理器组件返回其中一个缓存的访问点。 可以基于排序返回缓存的接入点,例如在服务之间分发请求。 如果服务失败,客户端会调用具有故障详细信息的管理器组件的与故障相关的方法,并检索新的接入点。 管理器组件将错误报告给错误处理服务,从而可以在服务注册表的服务质量统计信息中使用错误信息。

    Digitally signing documents using identity context information
    5.
    发明授权
    Digitally signing documents using identity context information 有权
    使用身份上下文信息数字签名文档

    公开(公告)号:US08479006B2

    公开(公告)日:2013-07-02

    申请号:US12143392

    申请日:2008-06-20

    IPC分类号: H04L9/32

    摘要: Creating a token for use by an entity when digitally signing documents. In a computing environment, a digital identity representation for an entity is accessed. The digital identity representation includes information identifying identity attributes about the entity and capabilities of an identity provider that provides tokens for use by the entity. Context information is accessed. The context information includes information about one or more of which, how or where the attributes for the entity identified in the digital identity representation will be used. A security token is created from the information in the digital identity representation and the context information. The security token makes assertions by the identity provider. The assertions are based on the information in the digital identity representation. The token further includes information related to at least a portion of the context information.

    摘要翻译: 创建一个令牌供实体在数字签署文档时使用。 在计算环境中,访问实体的数字身份表示。 数字身份表示包括识别关于实体的身份属性的信息以及提供令牌以供实体使用的身份提供者的能力。 访问上下文信息。 上下文信息包括关于在数字身份表示中识别的实体的属性的一个或多个,如何或何处被使用的信息。 根据数字身份表示和上下文信息中的信息创建安全令牌。 安全令牌由身份提供者进行断言。 断言是基于数字身份表示中的信息。 令牌还包括与上下文信息的至少一部分相关的信息。

    Portable personal identity information
    6.
    发明授权
    Portable personal identity information 有权
    便携式个人身份信息

    公开(公告)号:US08078880B2

    公开(公告)日:2011-12-13

    申请号:US11495826

    申请日:2006-07-28

    IPC分类号: G06F21/00

    CPC分类号: H04L63/102 G06F21/335

    摘要: A user interacts with a client containing personal identity information operable to identify the user to a relying party when the relying party is presented with claims comprising a portion of the personal identity information. The personal identity information includes one or more claims, metadata associated with the one or more claims, and backing data associated with the one or more claims. The user may initiate use of another client and seek to be identified by the relying party while interacting with the other client by first porting the personal identity information to the other client. Porting the personal identity information includes binding the personal identity information and sending the bound personal identity information to a receiving client.

    摘要翻译: 用户与包含个人身份信息的客户端进行交互,当信任方被呈现包含个人身份信息的一部分的权利要求时,可操作以将用户识别给依赖方。 个人身份信息包括一个或多个权利要求,与一个或多个权利要求相关联的元数据,以及与该一个或多个权利要求相关联的背景数据。 用户可以开始使用另一个客户端,并且通过首先将个人身份信息移植到另一个客户端来寻求由依赖方与另一客户端进行交互的同时识别。 移植个人身份信息包括绑定个人身份信息并将绑定的个人身份信息发送给接收客户端。

    Portable personal identity information
    7.
    发明申请
    Portable personal identity information 有权
    便携式个人身份信息

    公开(公告)号:US20080028215A1

    公开(公告)日:2008-01-31

    申请号:US11495826

    申请日:2006-07-28

    IPC分类号: H04L9/00

    CPC分类号: H04L63/102 G06F21/335

    摘要: A user interacts with a client containing personal identity information operable to identify the user to a relying party when the relying party is presented with claims comprising a portion of the personal identity information. The personal identity information includes one or more claims, metadata associated with the one or more claims, and backing data associated with the one or more claims. The user may initiate use of another client and seek to be identified by the relying party while interacting with the other client by first porting the personal identity information to the other client. Porting the personal identity information includes binding the personal identity information and sending the bound personal identity information to a receiving client.

    摘要翻译: 用户与包含个人身份信息的客户端进行交互,当信任方被呈现包含个人身份信息的一部分的权利要求时,可操作以将用户识别给依赖方。 个人身份信息包括一个或多个权利要求,与一个或多个权利要求相关联的元数据,以及与该一个或多个权利要求相关联的背景数据。 用户可以开始使用另一个客户端,并且通过首先将个人身份信息移植到另一个客户端来寻求由依赖方与另一客户端进行交互的同时识别。 移植个人身份信息包括绑定个人身份信息并将绑定的个人身份信息发送给接收客户端。