×

Request-specific authentication for accessing web service resources

  • US 9,590,994 B2
  • Filed: 11/09/2015
  • Issued: 03/07/2017
  • Est. Priority Date: 04/20/2007
  • Status: Active Grant
First Claim
Patent Images

1. A computing system for controlling access to a protected Web service resource, the computing system comprising:

  • a communication device for communicating across a communication network;

    an interface configured to receive a first request from a client to access the protected Web service resource from the communication network;

    the interface configured to generate a fault on a condition that the first request fails to indicate that at least one message-specific authentication protocol process has been completed; and

    a transmitter configured to transmit the fault to the client, the fault including;

    an identifier of the first request;

    an identifier of one or more authentication processes associated with the first request;

    an address to an authentication service that can issue an encrypted token; and

    an identifier of the client on behalf of whom the first request was made;

    the interface further configured to receive a second request from the client to access the protected Web service resource from the communication network, the second request including the encrypted token obtained from the authentication service identified in the fault, wherein the encrypted token includes;

    the identifier of the first request; and

    an indication of successful completion of the one or more authentication processes associated with the first request;

    the interface further configured to grant the second request to access the protected Web service resource based on validation of the encrypted token, the validation comprising decryption of the encrypted token with a public key of the authentication service by the processing unit.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×