Identity assertion framework
US9571285B2 · kind B2 · utility
Inventors
Key dates
| Filing date | Feb 17, 2015 |
| Grant date | Feb 14, 2017 |
| Priority date | — |
| Expiry date | Apr 18, 2035 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L63/20
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Systems and methods for implementing an identity assertion framework to authenticate a user in a federation of security domains are provided. A first security token service associated with a first security domain is configured to receive a request for a first token from a device and issue the first token based on a first issuing policy of the first security domain. A token authenticator associated with a second security domain is configured to determine that the first token is not issued in the second security domain. A hardware-processor-implemented second security token service is configured to receive the first token from the token authenticator, determine that the first token was issued by the first security token service, and validate the first token based on a local federation policy that defines a federation agreement between the first security domain and the second security domain.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.