白丝美女被狂躁免费视频网站,500av导航大全精品,yw.193.cnc爆乳尤物未满,97se亚洲综合色区,аⅴ天堂中文在线网官网

Identity experience framework

專利號(hào)
US11997077B2
公開(kāi)日期
2024-05-28
申請(qǐng)人
Microsoft Technology Licensing, LLC(US WA Redmond)
發(fā)明人
Raja Charu Vikram Kakumani; Brandon B. Murdoch; Ronald Bjones; Muhammad Omer Iqbal; Kim Cameron
IPC分類(lèi)
H04L9/00; H04L9/40; G06F3/0484
技術(shù)領(lǐng)域
policy,identity,ui,ief,provider,user,token,journeys,providers,composable
地域: WA WA Redmond

摘要

Methods for composable user journeys for user authentication via an identity experience framework are performed by systems and apparatuses. Initiating a user authentication process for an application triggers application calls for dynamic invocation of a specific identity policy, required by the application, of a number of identity policies managed by a host of the identity experience framework. User interfaces defined by the identity policies are provided from the host to the application for interaction by the user and entry of identity information needed to authenticate the user according to specified verification providers. Identity claims and token requests are provided from the application to the host which then authenticates the identity claims via the verification providers and mints a token that includes the claims required by the application, according to the identity policy. The application consumes the token to complete the token request and allow the user access to the application.

說(shuō)明書(shū)

The additional examples and embodiments described in this Section may be applicable to examples disclosed in any other Section or subsection of this disclosure.

A system is described herein. The system may be configured and enabled in various ways to provide composable user journeys for user authentication, and the system may perform its functions according to an identity experience framework, as described herein. The system includes a memory(ies) configured to store program logic, and also includes a processor(s) configured to access the memory and to execute the program logic. In the system, the program logic includes communicator logic and policy executor logic. The communicator logic configured to receive a call from an application, the call indicating or specifying an identity policy that is one of a plurality of identity policies for dynamic deployment by the application, and to receive a token request and an identity claim responsive to user interaction with a user interface (UI) associated with the identity policy and provided to the application. The policy executor logic is configured to execute a user authentication process that is defined by the identity policy and that includes providing the UI to the application. The policy executor logic is also configured to verify the identity claim and provide a token to the application for consumption, via the communicator logic, to complete the token request.

In an embodiment of the system, the policy executor logic, to verify the identity claim, is configured to provide the identity claim to a verification provider according to the identity policy, receive a response claim from the verification provider, and verify the identity claim against the response claim.

權(quán)利要求

1
微信群二維碼
意見(jiàn)反饋