×

Request-specific authentication for accessing web service resources

  • US 9,832,185 B2
  • Filed: 01/23/2017
  • Issued: 11/28/2017
  • Est. Priority Date: 04/20/2007
  • Status: Active Grant
First Claim
Patent Images

1. A computing system for controlling access to a protected Web service resource, the computing system comprising:

  • a communication device for communicating across a communication network;

    a processor communicatively connected to the communication device; and

    memory storing program instructions, which when executed by the processor cause the computing system to;

    receive a first request from a client to access the protected Web service resource from the communication network;

    determine that the client has been authenticated according to a first factor;

    grant the first request to access the protected Web service resource based on authentication according to the first factor;

    receive a second request from the client to access the protected Web service resource from the communication network;

    deny the second request to access the protected Web service resource based on the authentication according to the first factor being insufficient to grant the second request, including to send a message to the client directing the client to an authentication service to be authenticated according to a second factor;

    determine that the client has been authenticated according to the second factor, andgrant the second request to access the protected Web service resource based on authentication according to the second factor including an evaluation of an authentication token.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×