×

Access control using tokens and black lists

  • US 9,537,865 B1
  • Filed: 12/03/2015
  • Issued: 01/03/2017
  • Est. Priority Date: 12/03/2015
  • Status: Active Grant
First Claim
Patent Images

1. A method for access control, comprising:

  • determining whether an event has occurred, wherein the event is at least one of receiving an unauthorized request to access a resource, modification to the resource, exceeding a specified number of failed attempts to access the resource, a change in employment of a user attempting to access the resource, known illegality of the resource, and known vulnerability of the resource;

    based on determining that the event has occurred, pushing the event to a server;

    receiving the pushed event;

    adding a value of the pushed event to a black list of recently disabled users, devices, applications, or any combination thereof;

    receiving a request to access the resource on the server, the request comprising an access token;

    comparing a field value of the access token with the black list; and

    declining the request based on a match of the field value of the access token with a value of the pushed event in the black list.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×