Invention Grant
- Patent Title: Determining an identity of a third-party user in an SAML implementation of a web-service
-
Application No.: US12122422Application Date: 2008-05-16
-
Publication No.: US09973491B2Publication Date: 2018-05-15
- Inventor: Rahul Joshi , Wellen Lau
- Applicant: Rahul Joshi , Wellen Lau
- Applicant Address: US CA Redwood Shores
- Assignee: ORACLE INTERNATIONAL CORPORATION
- Current Assignee: ORACLE INTERNATIONAL CORPORATION
- Current Assignee Address: US CA Redwood Shores
- Agency: Park, Vaughan, Fleming & Dowler LLP
- Agent Shun Yao
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/31 ; H04L9/32

Abstract:
One embodiment of the present invention provides a system that facilitates determining an identity of a third-party user in a Security Assertion Markup Language (SAML) implementation of a web-service. During operation, the system receives an SAML token profile web service request from the third-party user at the web-service. The system also receives a digital certificate designated by the SAML token profile web service request from the third-party user at the web-service. Next, the system analyzes the digital certificate to identify a third-party associated with the third-party user. The system then determines if the third-party is a trusted party. Next, the system receives one or more attributes associated with the third-party user at the web-service. The system then uses the attributes to identify the third-party user. Finally, the system performs a lookup in a user map to determine a user account that is associated with the third-party user.
Public/Granted literature
- US20090288155A1 DETERMINING AN IDENTITY OF A THIRD-PARTY USER IN AN SAML IMPLEMENTATION OF A WEB-SERVICE Public/Granted day:2009-11-19
Information query