Method and system for policy-based initiation of federation management
First Claim
1. A method for performing a federation protocol operation within a data processing system, the computer-implemented method comprising:
- receiving a message;
in response to a determination that the message is associated with a federated user lifecycle management (FULM) operation such that subsequent processing of the message requires execution of a first federation protocol operation, filtering, by a policy filter mechanism, the message against a set of policies to determine a subset of one or more applicable policies, the set of policies stored in a database;
in response to a determination that an applicable policy of the set of policies should be applied, suspending processing of the message by the first federation protocol operation;
enforcing an applicable policy by performing a second federation protocol operation as indicated by the applicable policy prior to performing the first federation protocol operation; and
in response to concluding enforcement of the applicable policy, initiating the first federation protocol operation against the message.
1 Assignment
0 Petitions
Accused Products
Abstract
A method, a system, an apparatus, and a computer program product is presented for performing federation protocol operations within a data processing system. A message is received. In response to a determination that subsequent processing of the message requires execution of a first federation protocol operation, the message is filtered against a set of policies to determine a subset of one or more applicable policies. An applicable policy is enforced by performing a second federation protocol operation as indicated by the applicable policy prior to performing the first federation protocol operation. In response to concluding enforcement of the applicable policy, the first federation protocol operation is initiated.
40 Citations
30 Claims
-
1. A method for performing a federation protocol operation within a data processing system, the computer-implemented method comprising:
-
receiving a message; in response to a determination that the message is associated with a federated user lifecycle management (FULM) operation such that subsequent processing of the message requires execution of a first federation protocol operation, filtering, by a policy filter mechanism, the message against a set of policies to determine a subset of one or more applicable policies, the set of policies stored in a database; in response to a determination that an applicable policy of the set of policies should be applied, suspending processing of the message by the first federation protocol operation; enforcing an applicable policy by performing a second federation protocol operation as indicated by the applicable policy prior to performing the first federation protocol operation; and in response to concluding enforcement of the applicable policy, initiating the first federation protocol operation against the message. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20)
-
-
21. A computer program product on a non-transitory computer readable storage medium for use within a data processing system for performing a federation protocol operation, the computer program product holding computer program instructions which when executed by the data processing system perform a method comprising:
-
receiving a message; in response to a determination that the message is associated with a federated user lifecycle management (FULM) operation such that subsequent processing of the message requires execution of a first federation protocol operation, filtering the message against a set of policies to determine a subset of one or more applicable policies in response to a determination that subsequent processing of the message requires execution of a first federation protocol operation; in response to a determination that an applicable policy of the set of policies should be applied, suspending processing of the message by the first federation protocol operation; enforcing an applicable policy by performing a second federation protocol operation as indicated by the applicable policy prior to performing the first federation protocol operation; and initiating the first federation protocol operation in response to concluding enforcement of the applicable policy against the message. - View Dependent Claims (22, 23, 24, 25, 26, 27, 28, 29)
-
-
30. An apparatus of a data processing system for performing a federation protocol operation, the apparatus comprising:
-
a processor; a computer memory holding computer program instructions which when executed by the processor perform a method comprising; receiving a message; in response to a determination that the message is associated with a federated user lifecycle management (FULM) operation such that subsequent processing of the message requires execution of a first federation protocol operation, filtering the message against a set of policies to determine a subset of one or more applicable policies in response to a determination that subsequent processing of the message requires execution of a first federation protocol operation; in response to a determination that an applicable policy of the set of policies should be applied, suspending processing of the message by the first federation protocol operation; enforcing an applicable policy by performing a second federation protocol operation as indicated by the applicable policy prior to performing the first federation protocol operation; and initiating the first federation protocol operation in response to concluding enforcement of the applicable policy against the message.
-
Specification