Invention Grant
US08505085B2 Flexible authentication for online services with unreliable identity providers
有权
具有不可靠身份提供者的在线服务的灵活身份验证
- Patent Title: Flexible authentication for online services with unreliable identity providers
- Patent Title (中): 具有不可靠身份提供者的在线服务的灵活身份验证
-
Application No.: US13082403Application Date: 2011-04-08
-
Publication No.: US08505085B2Publication Date: 2013-08-06
- Inventor: Angus P. D. Logan , Mark Ryland , Ariel Gordon , Vittorio Bertocci
- Applicant: Angus P. D. Logan , Mark Ryland , Ariel Gordon , Vittorio Bertocci
- Applicant Address: US WA Redmond
- Assignee: Microsoft Corporation
- Current Assignee: Microsoft Corporation
- Current Assignee Address: US WA Redmond
- Agency: Rau Patents, LLC
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A flexible authentication system is described herein that fluidly switches between a federated authentication model and a local short-lived token model that does not require sophisticated authentication infrastructure at the relying party site. Upon detecting an event that causes the identity provider to be unavailable for authentication, the relying party switches to a temporary token model. The system generates a bearer token or challenge associated with the user's identity and (optionally) associated with time data that limits the period during which the token is valid. The relying party communicates the short-lived token to the user using contact information associated with the user and already stored by the relying party. Upon receiving the short-lived token, the user provides the short-lived token to the relying party, and the relying party processes the token to validate the user's identity and then allows the user to access the relying party's online services.
Public/Granted literature
- US20120260322A1 FLEXIBLE AUTHENTICATION FOR ONLINE SERVICES WITH UNRELIABLE IDENTITY PROVIDERS Public/Granted day:2012-10-11
Information query