Application-agnostic resource access control

    公开(公告)号:US11019073B2

    公开(公告)日:2021-05-25

    申请号:US15913906

    申请日:2018-03-06

    申请人: AtScale, Inc.

    IPC分类号: H04L29/06 H04L29/08

    摘要: Techniques are presented for efficiently provisioning application-agnostic resource access to a variety of applications without modification to the native access control mechanisms of the applications and without transmission of a user's credentials over the network. A user of an application is authenticated by an authorization provider. An access token for the authenticated user is generated. A session password is generated based at least in part on the access token. The session password is applied by the user to the native access control mechanism of an application to facilitate access to resources (e.g., set of subject data) by the application. The resource access is achieved without modification to the native access control mechanism of the application and without transmission of the credentials (e.g., username, password, etc.) of the user over the network.