Invention Grant
US09386007B2 Multi-domain applications with authorization and authentication in cloud environment 有权
在云环境中具有授权和认证的多域应用程序

  • Patent Title: Multi-domain applications with authorization and authentication in cloud environment
  • Patent Title (中): 在云环境中具有授权和认证的多域应用程序
  • Application No.: US14141495
    Application Date: 2013-12-27
  • Publication No.: US09386007B2
    Publication Date: 2016-07-05
  • Inventor: Jasen MinovMilen ManovStefan Petrov
  • Applicant: Jasen MinovMilen ManovStefan Petrov
  • Applicant Address: DE Walldorf
  • Assignee: SAP SE
  • Current Assignee: SAP SE
  • Current Assignee Address: DE Walldorf
  • Main IPC: H04L29/06
  • IPC: H04L29/06
Multi-domain applications with authorization and authentication in cloud environment
Abstract:
A multi-domain application requiring SSO and SLO operations in cloud environment is presented. The computing system of the multi-domain application includes a multi-domain service (MDS) to redirect the calls for the multi-domain application to an identity provider to authenticate the user or to invoke the single logout services (SLOs) on the domains of the multi-domain application and to invalidate the user sessions on the domains. A cookie that includes the multi-domain application URL is generated to reach the assertion consumer service (ACS) and the single logout service (SLO) that receive an identity assertion response from the identity provider. Domain specific SLOs are provided. A trust between these domain specific SLOs and the SLO is provided based on service provider keys. The SAML mechanism for a logout scenario is reused for communication between the SLO and the domain specific SLOs, where the SLO plays a role of a local IDP.
Information query
Patent Agency Ranking
0/0