Patent · US Expired

Multi-domain access control

US6339423B1 · kind B1 · utility

256Cited by
12References
28Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 23, 2000
Grant dateJan 15, 2002
Priority date
Expiry dateMar 23, 2020

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/08
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A multi-domain resource access control mechanism uses a single access control system to manage access by users to resources that belong to multiple domains. A server is associated with each domain in a set of domains. Access to resources in the domains is governed by an access control system. A first server for a first domain transmits a data token to a client seeking access to a resource in a second domain. The client transmits the data token to a second server in the other domain. The second server uses the data token to verify that the user is authentic, that is, authorized to access resources protected by the access control system. Once determining that the user is authorized to access resources, access control cookies are transmitted to client. When the client requests access to a resource in the second domain, and the request did not include access control cookies for the second domain, data is transmitted to the browser causing it to generate another request to the first server. The first server ensures that the user has been authenticated before transmitting the data token to the browser. In addition, the first server may cause copies of access control cookies for the user …

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.