首页> 外国专利> Cross-protocol federated single sign-on (F-SSO) for cloud enablement

Cross-protocol federated single sign-on (F-SSO) for cloud enablement

机译:跨协议的联合单点登录(F-SSO),用于实现云

摘要

A method to enable access to resources hosted in a compute cloud begins upon receiving a registration request to initiate a user's registration to use resources hosted in the compute cloud. During a registration process initiated by receipt of the registration request, a federated single sign-on (F-SSO) request is received. The F-SSO request includes an assertion (e.g., an HTTP-based SAML assertion) having authentication data (e.g., an SSH public key, a CIFS username, etc.) for use to enable direct user access to a resource hosted in the compute cloud. Upon validation of the assertion, the authentication data is deployed within the cloud to enable direct user access to the compute cloud resource using the authentication data. In this manner, the cloud provider provides authentication, single sign-on and lifecycle management for the user, despite the “air gap” between the HTTP protocol used for F-SSO and the non-HTTP protocol used for the user's direct access to the cloud resource.
机译:一种启用对计算云中托管的资源的访问的方法,是在接收到注册请求以启动用户的注册以使用计算云中托管的资源时开始的。在通过接收注册请求启动的注册过程中,接收到联合单点登录(F-SSO)请求。 F-SSO请求包括具有身份验证数据(例如SSH公钥,CIFS用户名等)的声明(例如,基于HTTP的SAML声明),用于使用户能够直接访问计算中托管的资源云。在确认声明后,身份验证数据将部署在云中,以使用户能够使用身份验证数据直接访问计算云资源。通过这种方式,尽管用于F-SSO的HTTP协议与用于用户直接访问服务器的非HTTP协议之间存在“空气间隙”,云提供商仍为用户提供身份验证,单点登录和生命周期管理。云资源。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号