白丝美女被狂躁免费视频网站,500av导航大全精品,yw.193.cnc爆乳尤物未满,97se亚洲综合色区,аⅴ天堂中文在线网官网

Identity experience framework

專利號
US11997077B2
公開日期
2024-05-28
申請人
Microsoft Technology Licensing, LLC(US WA Redmond)
發(fā)明人
Raja Charu Vikram Kakumani; Brandon B. Murdoch; Ronald Bjones; Muhammad Omer Iqbal; Kim Cameron
IPC分類
H04L9/00; H04L9/40; G06F3/0484
技術(shù)領(lǐng)域
policy,identity,ui,ief,provider,user,token,journeys,providers,composable
地域: WA WA Redmond

摘要

Methods for composable user journeys for user authentication via an identity experience framework are performed by systems and apparatuses. Initiating a user authentication process for an application triggers application calls for dynamic invocation of a specific identity policy, required by the application, of a number of identity policies managed by a host of the identity experience framework. User interfaces defined by the identity policies are provided from the host to the application for interaction by the user and entry of identity information needed to authenticate the user according to specified verification providers. Identity claims and token requests are provided from the application to the host which then authenticates the identity claims via the verification providers and mints a token that includes the claims required by the application, according to the identity policy. The application consumes the token to complete the token request and allow the user access to the application.

說明書

In FIG. 8, a diagram of identity policies 800 is shown, according to an example embodiment. Identity policies 800 includes a trustframework based identity policy 802 (“policy” 802), a customer/tenant base identity policy 804 (“policy” 804), and a customer/tenant application identity policy 806 (“policy” 806). As shown, policy 806 corresponds to a specific application of an application service provider (e.g., a customer or a tenant) and is modified/extended from policy 804. An application service provider may have one or more of policy 806 for different applications. Policy 806 may be authored by providers of the IEF, as described herein, and/or by administrators of the application service provider, and may be referred to as a relying party policy. In embodiments, policy 806 may specify the exact user journey, token semantics with respect to identity claims, and a token lifetime, as well configure the verification UI page customizations.

Policy 804 corresponds to a specific application service provider (e.g., a customer or a tenant) and is modified/extended from policy 802. Policy 804 may serve as a base policy for any number of applications of the application service provider, and in embodiments an application services provider (e.g., a customer or a tenant) may have a single policy 804. Policy 804 may be authored by providers of the IEF, as described herein, and/or by administrators of the application service provider. For instance, policy 804 may be modified/extended from policy 802 to include instantiations of specific social network IdP metadata and/or user attributes, as well as the relying party policies that are invoked by a relying party.

權(quán)利要求

1
微信群二維碼
意見反饋