Patent · US Active

Methods and systems for authorizing web service requests

US9571495B2 · kind B2 · utility

6Cited by
8References
16Claims
0Family size

Assignee

Inventor

Key dates

Filing dateMay 29, 2014
Grant dateFeb 14, 2017
Priority date
Expiry dateMay 29, 2034

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/126
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Systems and methods for authorizing web service requests. In some embodiments, a computer-implemented method includes receiving a web service request having an authorization header and business code, authenticating a Security Assertion Markup Language (SAML) token included in the authorization header and constructing a security context based on attributes of the SAML token. The process also includes passing the security context to an authorization interceptor to interact with a policy information point (PIP) and a policy decision point (PDP), receiving a permit response, and then authorizing the web services request. In some implementations, the requested web service is then transmitted to the client computer that requested the web service.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.