Multi-level multi-user web services security system and method
First Claim
1. A security architecture for granting multi-level access to data items in a distributed network, comprising:
- an authentication server that provides access to at least one web portal using a web services based communication framework;
a system for securely establishing security credentials for an end user logging into the authentication server system;
an access directory that obtains the security credentials for the end user from the authentication server, generates a set of XML credential data based on a predefined XML schema, and returns the XML credential data to the authentication server; and
wherein the authentication server passes the XML credential data to the at least one web portal in order to grant access to the end user for data items accessible via the at least one web portal.
4 Assignments
0 Petitions
Accused Products
Abstract
A security system and method for granting multi-level access to data items in a distributed network. An architecture is provided, comprising: an authentication server that provides access to a web portal using a web services based communication framework; a system for securely establishing security credentials for an end user logging into the authentication server system; an access directory that obtains the security credentials for the end user from the authentication server, generates a set of XML credential data based on a predefined XML schema, and returns the XML credential data to the authentication server; and wherein the authentication server passes the XML credential data to the web portal in order to grant access to the end user for data items accessible via the web portal.
-
Citations
26 Claims
-
1. A security architecture for granting multi-level access to data items in a distributed network, comprising:
-
an authentication server that provides access to at least one web portal using a web services based communication framework;
a system for securely establishing security credentials for an end user logging into the authentication server system;
an access directory that obtains the security credentials for the end user from the authentication server, generates a set of XML credential data based on a predefined XML schema, and returns the XML credential data to the authentication server; and
wherein the authentication server passes the XML credential data to the at least one web portal in order to grant access to the end user for data items accessible via the at least one web portal. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10)
-
-
11. A method for granting multi-level access to data items in a distributed network, comprising:
-
providing an authentication server that can communicate with a web portal using a web services based framework;
establishing security credentials for an end user while logging into the authentication server;
converting the security credentials to a set of XML security data based on a predefined XML security schema;
passing the XML security data from the authentication server to the web portal; and
granting access to data items accessible via the web portal based on the XML security data. - View Dependent Claims (12, 13, 14, 15, 16, 17, 18, 19)
-
-
20. A system for providing multi-level access to data items in a distributed network, comprising:
-
a web portal for providing access to data items, wherein each data item is tagged with at least one identifier that dictates access to the data item based upon a predefined set of schema constructs; and
an authentication system for logging users into the web portal, wherein the authentication system is in communication with the web portal via a web services based communication framework, and wherein the authentication system includes;
a system for generating a set of XML credential data during a user login based on a predefined XML schema; and
a system for passing the set of XML credential data to the web portal to determine access to tagged data items for the user. - View Dependent Claims (21, 22, 23, 24, 25, 26)
-
Specification