Open platform authorization and authentication system and method based on OAuth protocol

An open platform and protocol technology, applied in the computer field, can solve the problem of resource access token abuse, affecting the convenience of the system, not taking into account, etc., to ensure security, facilitate authorization and authentication operations, and improve ease of use and convenience. Effect

Active Publication Date: 2017-03-22
XIDIAN UNIV
View PDF7 Cites 26 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The disadvantage of this method is that it only considers the user's operating authority on multiple third-party clients to achieve authorization through a unified login platform, and does not consider that the user needs to enter authorization information during each authorization process, resulting in a large number of repeated operations , affecting the ease of use of the system
The disadvantage of this method is that it only considers using the terminal to obtain the system access token in advance to save the authorization process, and does not limit the valid time of the system access token, which leads to the abuse of resource access tokens and poor security

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Open platform authorization and authentication system and method based on OAuth protocol
  • Open platform authorization and authentication system and method based on OAuth protocol
  • Open platform authorization and authentication system and method based on OAuth protocol

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0038] The present invention will be described in further detail below in conjunction with the accompanying drawings.

[0039] refer to figure 1 , the system of the present invention includes an authorization client and an authorization server. in,

[0040] The authorization client is used to send an authorization authentication request to the authorization server, and receive the returned resource access token and token validity time. When the resource access token is valid, the user uses the resource access token to directly obtain resources, and according to the user resource access token The number of times and time to get resets the valid time of the token.

[0041] The authorization server is used to receive the authorization authentication request sent by the authorized client, and obtain the unauthorized access token corresponding to the third-party client, and then obtain the resource access token and valid time and send it to the authorized client.

[0042]The aut...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses an open platform authorization and authentication system and method based on an OAuth protocol, and mainly aims to solve the problem of misuse of a resource access token since the valid time of the resource access token is not optimized or limited reasonably in the prior art. The system comprises an authorization client and an authorization server, wherein the authorization client is used for transmitting an authorization and authentication request, receiving the resource access token and the valid time of the token through function modules inside the authorization client, and resetting the valid time of the token according to acquisition times and time of user resources; and the authorization server is used for receiving and checking the authorization and authentication request, acquiring an unauthorized access token and the valid of the token through function modules inside the authorization server, generating a resource access token and the valid time of the token, and transmitting the resource access token and the valid time of the token to the authorization client. Through adoption of the open platform authorization and authentication system and method, an authorization and authentication process is simplified, and the resource security is improved. The open platform authorization and authentication system and method can be applied to an authentication and authorization process during acquisition of open platform resources.

Description

technical field [0001] The invention belongs to the field of computer technology, and in particular relates to an open platform authorization and authentication technology, which can be used in the authentication and authorization process when obtaining open platform resources. Background technique [0002] The OAuth protocol provides an open, secure and simple standard for the authorization of resources in open platforms. It is used by most Internet operators to solve authentication and authorization issues between users, third-party clients and service providers between open platforms. open protocol. Without providing the user's account number and password to the third-party client, the third-party client can access the user's resources on the open platform through user authorization, which simply and conveniently ensures the security of user information and the acquisition of resources . However, every time the OAuth protocol is used to authorize resources, it is necess...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L63/0807
Inventor 李青山褚华马明宇寇苗娟问茜茹
Owner XIDIAN UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products