Patent · US Expired

Secure resource access

US7373662B2 · kind B2 · utility

14Cited by
1References
39Claims
0Family size

Assignee

Inventors

Key dates

Filing dateAug 27, 2002
Grant dateMay 13, 2008
Priority date
Expiry dateJun 3, 2025

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/102
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method and system for enabling a user to authorize a client, acting under the directed of a first resource, to access a second resource. Before the client accesses the second resource, client programming, that is autonomous of the first and second resources, redirects the client to an authorization service that is also autonomous of the first and second resource. The authorization service authenticates the user, identifies policy data, if any, associated with the user and the first resource, and then returns to the client an interface generated according to the identified policy data, if any, enabling the user to grant or deny authorization. Where policy data does not exist, the authorization service returns an interface to the client enabling the user to set policy data.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.