白丝美女被狂躁免费视频网站,500av导航大全精品,yw.193.cnc爆乳尤物未满,97se亚洲综合色区,аⅴ天堂中文在线网官网

Identity experience framework

專利號(hào)
US11997077B2
公開(kāi)日期
2024-05-28
申請(qǐng)人
Microsoft Technology Licensing, LLC(US WA Redmond)
發(fā)明人
Raja Charu Vikram Kakumani; Brandon B. Murdoch; Ronald Bjones; Muhammad Omer Iqbal; Kim Cameron
IPC分類
H04L9/00; H04L9/40; G06F3/0484
技術(shù)領(lǐng)域
policy,identity,ui,ief,provider,user,token,journeys,providers,composable
地域: WA WA Redmond

摘要

Methods for composable user journeys for user authentication via an identity experience framework are performed by systems and apparatuses. Initiating a user authentication process for an application triggers application calls for dynamic invocation of a specific identity policy, required by the application, of a number of identity policies managed by a host of the identity experience framework. User interfaces defined by the identity policies are provided from the host to the application for interaction by the user and entry of identity information needed to authenticate the user according to specified verification providers. Identity claims and token requests are provided from the application to the host which then authenticates the identity claims via the verification providers and mints a token that includes the claims required by the application, according to the identity policy. The application consumes the token to complete the token request and allow the user access to the application.

說(shuō)明書(shū)

In an embodiment, the system includes policy portal logic that is configured to provide access for customer entities to a base identity policy of the plurality of identity policies, the customer entities including one or more of at least one application service provider or at least one identity operator. In the embodiment, the policy portal logic is configured to perform one or more of: receive a customer entity base identity policy that includes one or more modifications to the base identity policy from which it derives; or receive a customer entity application identity policy that includes one or more additional modifications to the customer entity base identity policy from which it derives, the one or more additional modifications being related to the application. In the embodiment, the policy portal logic is configured to store received customer entity base identity policies or customer entity application identity policies as a portion of the plurality of identity policies.

In an embodiment of the system, the communicator logic and the policy executor logic comprise a multi-sided identity experience framework configured to support a plurality of remote identity operators, a plurality of remote verification providers, and a plurality of remote application service providers for user authentication to applications.

In an embodiment of the system, the UI is defined by the identity policy that is called by the application and is configured in accordance with one or more verification providers specified by the identity policy.

In an embodiment of the system, the policy executor logic is configured to execute the user authentication process at least in part as a security token service (STS), and to mint the token according to the STS and the token request to include claims required by the application and the identity policy.

權(quán)利要求

1
微信群二維碼
意見(jiàn)反饋