×

MULTIPLE RESOURCE SERVERS INTERACTING WITH SINGLE OAUTH SERVER

  • US 20160028737A1
  • Filed: 10/08/2015
  • Published: 01/28/2016
  • Est. Priority Date: 09/20/2013
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • receiving, at an authorization computing system, a request to access a resource server from a client application that executes in a context of an identity domain of a plurality of identity domains;

    identifying a service profile that is applicable only to the identity domain of the plurality of identity domains, wherein the service profile indicates a set of resource servers that the client application is permitted to access in the context of the identity domain;

    determining, based on the set of resource servers indicated by the OAuth service profile, whether the client application is permitted to access the resource server in the context of identity domain, wherein the client application is permitted access to the resource server upon determining that the resource server is included in the set of resource servers;

    upon determining that the client application is not permitted to access the resource server in the context of the identity domain, denying the request to access the resource server, wherein denying the request to access the resource server includes blocking communication from the client application to the resource server in the context of the identity domain;

    upon determining that the client application is permitted to access the resource server in the context of the identity domain, accessing the resource server to obtain scope information for the resource server; and

    generating, based on the scope information obtained from the resource server, a token for the client application to access the resource server.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×