The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Dec. 14, 2021

Filed:

Jun. 19, 2017
Applicant:

Huawei Technologies Co., Ltd., Shenzhen, CN;

Inventor:

Yaoye Zhang, Nanjing, CN;

Assignee:
Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); H04L 29/06 (2006.01); G06F 21/10 (2013.01); H04L 9/32 (2006.01); H04L 29/08 (2006.01);
U.S. Cl.
CPC ...
H04L 29/06 (2013.01); G06F 21/10 (2013.01); H04L 9/3213 (2013.01); H04L 63/0823 (2013.01); H04L 63/0884 (2013.01); H04L 63/0892 (2013.01); H04L 63/10 (2013.01); H04L 63/105 (2013.01); H04L 63/126 (2013.01); H04L 29/08 (2013.01);
Abstract

An authorization processing method, a device, and a system, where the method includes receiving an authorization request from a public client, where the authorization request includes a client identifier of the public client, a requested redirect uniform resource identifier (URI), and a requested authorization scope, obtaining authorization information of the public client according to the client identifier, obtaining an authorization scope corresponding to an authorization credential stored in the authorization information, obtaining authorization notification information of an owner of a resource according to the requested authorization scope when the requested authorization scope exceeds the authorization scope corresponding to the authorization credential, generating a first access token whose authorization scope corresponds to the requested authorization scope, and sending the first access token to the public client according to the requested redirect URI. Hence, the method effectively resolves a security threat problem in a process of authorizing the public client.


Find Patent Forward Citations

Loading…