APPLICATION AS RESOURCE OR SERVICE BODY
Techniques are provided for granting access to a second type of identity system using a second type of identity token to an application of a first type of identity system using a first type of identity token. An application may make a request to a token exchange system. The request may include a pub...
Gespeichert in:
Hauptverfasser: | , , , , |
---|---|
Format: | Patent |
Sprache: | chi ; eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | Techniques are provided for granting access to a second type of identity system using a second type of identity token to an application of a first type of identity system using a first type of identity token. An application may make a request to a token exchange system. The request may include a public key of the application and a holder token. The token exchange system may exchange the holder token to an owning attestation token after performing the verification step. The token exchange system may exchange a first token (e.g., a holder token) for a first identity system with a second token (e.g., an owning token) for a second identity system without having to enter credentials to access the second identity system.
提供了用于向使用第一类型的身份令牌的第一类型的身份系统的应用授予对使用第二类型的身份令牌的第二类型的身份系统的访问的技术。应用可以向令牌交换系统做出请求。该请求可以包括应用的公钥和持有者令牌。令牌交换系统可以在执行核实步骤之后将持有者令牌交换为拥有证明令牌。令牌交换系统可以将用于第一身份系统的第一令牌(例如,持有者令牌)交换为用于第二身份系统的第二令牌(例如,拥有证明令牌),而不需要录入凭证来访问第二身份系统。 |
---|