Invention Grant
- Patent Title: Multiple resource servers interacting with single OAuth server
- Patent Title (中): 多个资源服务器与单个OAuth服务器交互
-
Application No.: US14266472Application Date: 2014-04-30
-
Publication No.: US09197623B2Publication Date: 2015-11-24
- Inventor: Uppili Srinivasan , Ajay Sondhi , Ching-Wen Chu , Venkata S. Evani , Beomsuk Kim
- Applicant: Oracle International Corporation
- Applicant Address: US CA Redwood Shores
- Assignee: Oracle International Corporation
- Current Assignee: Oracle International Corporation
- Current Assignee Address: US CA Redwood Shores
- Agency: Kilpatrick Townsend & Stockton LLP
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A framework, which conforms to the OAuth standard, involves a generic OAuth authorization server that can be used by multiple resource servers in order to ensure that access to resources stored on those resource servers is limited to access to which the resource owner consents. Each resource server registers, with the OAuth authorization server, metadata for that resource server, indicating scopes that are recognized by the resource server. The OAuth authorization server refers to this metadata when requesting consent from a resource owner on behalf of a client application, so that the consent will be of an appropriate scope. The OAuth authorization server refers to this metadata when constructing an access token to provide to the client application for use in accessing the resources on the resource server. The OAuth authorization server uses this metadata to map issued access tokens to the scopes to which those access tokens grant access.
Public/Granted literature
- US20150089597A1 MULTIPLE RESOURCE SERVERS INTERACTING WITH SINGLE OAUTH SERVER Public/Granted day:2015-03-26
Information query