SYSTEM AND METHOD FOR SINGLE SIGN-ON TECHNICAL SUPPORT ACCESS TO TENANT ACCOUNTS AND DATA IN A MULTI-TENANT PLATFORM

    公开(公告)号:US20200336477A1

    公开(公告)日:2020-10-22

    申请号:US16922939

    申请日:2020-07-07

    申请人: Zuora, Inc.

    摘要: Shown is single sign-on support access to tenant accounts in a multi-tenant service platform involving a proxy user account in an identity provider for a tenant account on the service platform having security metadata associated therewith, mapping in the identity provider maps a support user to a proxy user identifier, a corresponding security endpoint in the service platform and mapping of the proxy user account identifier to the tenant account and security metadata. The identity provider authenticates a request to access the tenant account on the service platform, obtains the security credentials for the proxy user identifier, and sends a security assertion with the proxy user identifier and the security metadata to the security endpoint. The endpoint receives and validates the security assertion against the mapping for the proxy user identifier to the tenant account and the security metadata in the service platform, and permits access by the support user to the tenant account in the service platform.

    System and method for single sign-on technical support access to tenant accounts and data in a multi-tenant platform

    公开(公告)号:US10708255B2

    公开(公告)日:2020-07-07

    申请号:US16293435

    申请日:2019-03-05

    申请人: Zuora, Inc.

    摘要: Shown is single sign-on support access to tenant accounts in a multi-tenant service platform involving a proxy user account in an identity provider for a tenant account on the service platform having security metadata associated therewith, mapping in the identity provider maps a support user to a proxy user identifier, a corresponding security endpoint in the service platform and mapping of the proxy user account identifier to the tenant account and security metadata. The identity provider authenticates a request to access the tenant account on the service platform, obtains the security credentials for the proxy user identifier, and sends a security assertion with the proxy user identifier and the security metadata to the security endpoint. The endpoint receives and validates the security assertion against the mapping for the proxy user identifier to the tenant account and the security metadata in the service platform, and permits access by the support user to the tenant account in the service platform.

    System and method for single sign-on technical support access to tenant accounts and data in a multi-tenant platform

    公开(公告)号:US10250584B2

    公开(公告)日:2019-04-02

    申请号:US14884492

    申请日:2015-10-15

    申请人: Zuora, Inc.

    摘要: Shown is single sign-on support access to tenant accounts in a multi-tenant service platform involving a proxy user account in an identity provider for a tenant account on the service platform having security metadata associated therewith, mapping in the identity provider maps a support user to a proxy user identifier, a corresponding security endpoint in the service platform and mapping of the proxy user account identifier to the tenant account and security metadata. The identity provider authenticates a request to access the tenant account on the service platform, obtains the security credentials for the proxy user identifier, and sends a security assertion with the proxy user identifier and the security metadata to the security endpoint. The endpoint receives and validates the security assertion against the mapping for the proxy user identifier to the tenant account and the security metadata in the service platform, and permits access by the support user to the tenant account in the service platform.

    System and Method for Single Sign-On Technical Support Access to Tenant Accounts and Data in a Multi-Tenant Platform
    7.
    发明申请
    System and Method for Single Sign-On Technical Support Access to Tenant Accounts and Data in a Multi-Tenant Platform 审中-公开
    单一登录技术支持的系统和方法访问多租户平台中的租户帐户和数据

    公开(公告)号:US20160134619A1

    公开(公告)日:2016-05-12

    申请号:US14884492

    申请日:2015-10-15

    申请人: Zuora, Inc.

    IPC分类号: H04L29/06 G06F17/30

    摘要: Shown is single sign-on support access to tenant accounts in a multi-tenant service platform involving a proxy user account in an identity provider for a tenant account on the service platform having security metadata associated therewith, mapping in the identity provider maps a support user to a proxy user identifier, a corresponding security endpoint in the service platform and mapping of the proxy user account identifier to the tenant account and security metadata. The identity provider authenticates a request to access the tenant account on the service platform, obtains the security credentials for the proxy user identifier, and sends a security assertion with the proxy user identifier and the security metadata to the security endpoint. The endpoint receives and validates the security assertion against the mapping for the proxy user identifier to the tenant account and the security metadata in the service platform, and permits access by the support user to the tenant account in the service platform.

    摘要翻译: 显示的是在多租户服务平台中的租户帐户的单一登录支持,其涉及具有与其相关联的安全元数据的服务平台上的租户帐户的身份提供商中的代理用户帐户,身份提供商中的映射映射支持用户 代理用户标识符,服务平台中的对应的安全端点以及代理用户帐户标识符与租户帐户和安全元数据的映射。 身份提供商认证访问服务平台上的租户帐户的请求,获取代理用户标识符的安全凭证,并将安全断言与代理用户标识符和安全元数据发送到安全端点。 端点接收并验证针对代理用户标识符到租户帐户和服务平台中的安全元数据的映射的安全性断言,并允许支持用户访问服务平台中的租户帐户。