System and method for pool-based identity authentication for service access without use of stored credentials
First Claim
Patent Images
1. A method comprising:
- receiving, at an authentication authority, an authentication request from a web service provider, the authentication request comprising a service request by a service requestor to the web service provider to access a web service, and a service requestor identifying information;
determining authentication information from the service request sent to the web service, the service request comprising the authentication information;
validating the authentication information using independently verifiable data; and
in response to validating the authentication information meets the independently verifiable data, sending a grant or denial of access to the web service.
2 Assignments
0 Petitions
Accused Products
Abstract
A computer-implemented system and method for pool-based identity authentication for service access without use of stored credentials is disclosed. The method in an example embodiment includes providing provisioning information for storage in a provisioning repository; receiving a service request from a service consumer, the service request including requestor identifying information; generating an authentication request to send to an authentication authority, the authentication request including requestor identifying information; receiving validation of an authenticated service request from the authentication authority; and providing the requested service to the service consumer.
-
Citations
20 Claims
-
1. A method comprising:
-
receiving, at an authentication authority, an authentication request from a web service provider, the authentication request comprising a service request by a service requestor to the web service provider to access a web service, and a service requestor identifying information; determining authentication information from the service request sent to the web service, the service request comprising the authentication information; validating the authentication information using independently verifiable data; and in response to validating the authentication information meets the independently verifiable data, sending a grant or denial of access to the web service. - View Dependent Claims (2, 3, 4, 5, 6, 7)
-
-
8. A system comprising:
-
a memory device for storing instructions; and a processor, which, when executing the instructions, causes the system to perform operations comprising; receiving an authentication request from a web service provider, the authentication request comprising a service request by a service requestor to the web service provider to access a web service, and a service requestor identifying information; determining authentication information from the service request sent to the web service, the service request comprising the authentication information; validating the authentication information using independently verifiable data; and in response to validating the authentication information meets the independently verifiable data, sending a grant or denial of access to the web service. - View Dependent Claims (9, 10, 11, 12, 13, 14)
-
-
15. A computer readable non-transitory storage medium storing at least one program configured for execution by a computer, the at least one program comprising instructions to perform operations comprising:
-
receiving an authentication request from a web service provider, the authentication request comprising a service request by a service requestor to the web service provider to access a web service, and a service requestor identifying information; determining authentication information from the service request sent to the web service, the service request comprising the authentication information; validating the authentication information using independently verifiable data; and in response to validating the authentication information meets the independently verifiable data, sending a grant or denial of access to the web service. - View Dependent Claims (16, 17, 18, 19, 20)
-
Specification