Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Authentication and authorization method and system applied to client platform

An authentication and authorization, client-side technology, which is applied in the security authentication and authorization method and system field of the service interface of the Internet platform, and can solve the problems of authentication and authorization security hidden danger and low efficiency.

Inactive Publication Date: 2012-08-01
BEIJING QIHOO TECH CO LTD +1
View PDF0 Cites 47 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0044] The technical problem to be solved by the present invention is to provide a technical solution that can overcome the defects of potential safety hazards and low efficiency in authentication and authorization of the client platform (when interacting with network access) existing in the prior art. On top of that, users can only log in once when using different applications; use client-side login and authorization pages to avoid fake authorization pages; cancel the page jump step to improve user experience and avoid users needing to enter callbacks in the background in advance Address this complex step (to improve efficiency); and, further, allow the user to directly obtain some of the most basic information of the user without formal authorization from the user after adding the application

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Authentication and authorization method and system applied to client platform
  • Authentication and authorization method and system applied to client platform
  • Authentication and authorization method and system applied to client platform

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0052] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0053] The main process of the preferred embodiment involved in the present invention is as image 3 shown. according to image 3 , describe each step of the present invention in detail.

[0054] Step 1, the user opens an application (that is, an application program, such as an application / application program of a recharge service, etc.) on the client platform.

[0055] Step 2, the application calls the JS (javascript) interface of the open platform to obta...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an authentication and authorization method and an authentication and authorization system applied to a client platform. The method and the system are modified on the basis of a protocol in a way that the client platform provides a Javascript (JS) interface for an access application party for user login, authorization and authentication. The method comprises the following steps of: starting at least one application program of the client platform; calling the JS interface of the client platform to acquire the basic information at least comprising the username of a current login user by using the application program; if information indicating that the user does not log in is returned and the user is required by the application program to log in, calling a login JS interface by using the application program; calling back and returning the basic information of the signature of the user to the application program through the JS interface; and if the application program determines that only the information of the username and the signature are required, allowing the user to access the application program. Therefore, a plurality of users can share a plurality of pieces of application, the authorization page counterfeiting of the application is avoided, user experiences are improved, the advanced background entry of a calling-back address is avoided, and the basic information can be acquired without the official authorization of the user after the addition of the application.

Description

technical field [0001] The invention relates to the technical field of security in Internet interaction, in particular to a method and system for security authentication and authorization of an Internet platform service interface (client platform), and belongs to the technical field of Internet security. Background technique [0002] In the Internet age, some platforms will encapsulate their own services as interfaces for use by third-party developers. We generally call these platforms open platforms. By calling the interface provided by the open platform, third-party developers can easily import user information and provide services such as recharge, which improves development efficiency and saves a lot of development and operation costs for third-party developers. [0003] For an open platform, since user information must be provided to third-party developers, this involves user authentication and authorization. As a result, the OAuth authentication and authorization pro...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/06
Inventor 东玮
Owner BEIJING QIHOO TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products