CN102891859B - A kind of expired treatment system of token interface and method - Google Patents

A kind of expired treatment system of token interface and method Download PDF

Info

Publication number
CN102891859B
CN102891859B CN201210404569.5A CN201210404569A CN102891859B CN 102891859 B CN102891859 B CN 102891859B CN 201210404569 A CN201210404569 A CN 201210404569A CN 102891859 B CN102891859 B CN 102891859B
Authority
CN
China
Prior art keywords
token
interface
time
user
application
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201210404569.5A
Other languages
Chinese (zh)
Other versions
CN102891859A (en
Inventor
胡聪
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Qihoo Technology Co Ltd
Original Assignee
Beijing Qihoo Technology Co Ltd
Qizhi Software Beijing Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Qihoo Technology Co Ltd, Qizhi Software Beijing Co Ltd filed Critical Beijing Qihoo Technology Co Ltd
Priority to CN201210404569.5A priority Critical patent/CN102891859B/en
Publication of CN102891859A publication Critical patent/CN102891859A/en
Application granted granted Critical
Publication of CN102891859B publication Critical patent/CN102891859B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The invention discloses the expired treatment system of a kind of token interface and method, relate to internet arena. In described system, open platform comprises: token obtains interface, token is cancelled interface and the 3rd interface; Application provider is suitable for calling token according to user's authorized order and obtains interface to obtain token, use token to call the 3rd Interface realization and apply accordingly, and in the time that application follow-up no longer needs token or application call token after completing and cancel interface to cancel token; User interface is suitable for receiving user's authorized order, and receives user's exit instruction, and still in undissolved situation, calls token cancellation interface to cancel token according to exit instruction at token. Described system and method, has overcome and has cancelled the existing potential safety hazard of token according to the time-out time of fixing duration in prior art, has realized the cancellation adaptively to token, the security that has improved user profile.

Description

A kind of expired treatment system of token interface and method
Technical field
The present invention relates to Internet technical field, particularly a kind of token (Token) interfaceExpired treatment system and method.
Background technology
Internet era, some platform can be interface by the service encapsulates of self, for third partyDeveloper uses. We generally claim that these platforms are open platform. Third party developer is by adjustingThe interface providing with open platform, can import very easily user profile, provide and the clothes such as supplement with moneyBusiness, for third party developer has saved a large amount of exploitations and operation cost.
Concerning open platform, because user profile will be offered to third party developer, this justRelate to user's Authentication and authorization. Thus, OAuth Certificate Authority agreement is arisen at the historic moment. ArriveSo far, OAuth agreement has two versions to be widely used by everybody, is respectively OAuth1.0aWith OAuth2.0. In OAuth1.0a, application side needs Request of pre-first to fileToken, after subscriber authorisation, application side can obtain a RequestToken who authorized,In rear end, this RequestToken is replaced by AccessToken(token), after this all useThis AccessToken calls the service interface of open platform; In OAuth2.0, applicationSide directly requires subscriber authorisation, and after subscriber authorisation, application side can obtain one and authorizeAuthCode, is replaced by AccessToken in rear end by this AuthCode, after this all usesThis AccessToken calls the service interface of open platform. Visible, at two of OAuthPlant the application that all relates to AccessToken in authorization flow.
Obtain one of return parameters of AccessToken and be by calling the corresponding interfaceExpires_in, it represents the time-out time arranging, if the expired Access that re-uses of time-out timeToken removes to call other interfaces, and Token is expired in the explanation that can report an error. Token can be rightShould be one of an application, also can correspond to one of a next user of application. ExistingThe plan of establishment of Token time-out time is fixing duration, and this kind of set-up mode is often difficult to be applicable toUnder all applied environments, as some application will frequently be used Token, wish that time-out time is long,But time-out time is longer, security is lower, because after Token loses, and user's accountFamily is in this Token term of validity, and appropriator can use the illegal calling interface of this Token to makeBy stolen user's information. But some application are just used Token to obtain in logging inGet user profile one time, do not need the time-out time of growing especially. If allow application oneself selectTime-out time, application is difficult to select a suitable time-out time, is often tending towards time-out timeWhat arrange is long, and the long safety problem that just exists.
Summary of the invention
The technical problem to be solved in the present invention is: how the expired processing of a kind of token interface system is providedSystem and method, to cancel adaptively token, thus the security that improves user profile.
The expired treatment system of a kind of token interface, comprising: open platform, application provider and useInterface, family;
Described open platform comprises: token obtains interface, token is cancelled interface and the 3rd interface;
Described application provider is suitable for calling described token according to user's authorized order and obtains and connectMouth, to obtain token, uses described token to call described the 3rd Interface realization and applies accordingly, withAnd in the time that described application follow-up no longer needs described token or after described application completesCall described token and cancel interface to cancel described token;
Described user interface is suitable for receiving user's authorized order, and receives user's the finger that exitsOrder, and still in undissolved situation, call described token according to described exit instruction at described tokenCancel interface to cancel described token.
Wherein, described application provider comprises: token acquiring unit;
Described token acquiring unit is suitable for calling described token according to described user's authorized orderObtain interface to obtain token.
Wherein, described application provider also comprises: timeouts unit;
Described timeouts unit is suitable in the time that described token acquiring unit is obtained described token rawBecome and store the time-out time of described token.
Wherein, described application provider also comprises: overtime monitoring unit;
Described overtime monitoring unit is suitable for judging whether current time has exceeded described tokenTime-out time, if so, notifies described token acquiring unit to obtain new token.
Wherein, described token cancellation interface comprises: overtime judge module and overtime modified module;
Described overtime judge module, is suitable for extracting described token from described timeouts unitTime-out time, and judge whether current time has exceeded the time-out time of described token, ifBe, think that described token is cancelled, otherwise, notify described overtime modified module amendmentThe time-out time of described token;
Described overtime modified module is suitable for the time-out time of described token to be revised as current timeTime before.
Wherein, described application provider also comprises: application logical unit;
Described application logical unit is suitable in the time that described token is not cancelled, and uses described token to adjustApply accordingly with described the 3rd Interface realization.
Wherein, described user interface comprises: command reception unit and instruction process unit;
Described command reception unit is suitable for receiving user's authorized order and exit instruction;
Described instruction process unit is suitable for described authorized order to send to described application provider,And still in undissolved situation, call described token according to described exit instruction at described tokenCancel interface to cancel described token.
The present invention also provides a kind of token interface expired processing method, comprises step:
User interface receives user's authorized order, and sends to application to carry described authorized orderSupplier;
The token that described application provider calls in open platform according to described authorized order obtainsInterface obtains token;
Described application provider uses described token to call the 3rd interface in described open platformRealize corresponding application;
Described application provider in the time that described application follow-up no longer needs described token orAfter having applied described in person, call token cancellation interface and cancel described token;
Described user interface receives user's exit instruction, and in still undissolved feelings of described tokenUnder condition, call described token cancellation interface according to described exit instruction and cancel described token.
Wherein, described application provider calls the token in open platform according to described authorized orderObtain interface and obtain token, also comprise afterwards step:
Described application provider generates the time-out time of described token, and stores described when overtimeBetween.
Wherein, described application provider uses described token to call the 3rd in described open platformInterface realization is applied accordingly, specifically comprises step:
Described application provider judges whether current time exceedes the time-out time of described token, asFruit is to return to described step: user interface receives user's authorized order, and awards described in inciting somebody to actionPower instruction sends to application provider; Otherwise described application provider uses described token to callThe 3rd Interface realization in described open platform is applied accordingly.
Wherein, described token is cancelled interface and is cancelled described token, specifically comprises step:
Described token is cancelled interface and is obtained the time-out time of described token, and judges that current time isThe no time-out time that exceedes described token, if so, thinks that described token is cancelled,Otherwise, the time-out time of described token is revised as to the current time time before.
Wherein, described user interface receives user's exit instruction, and not yet gets at described tokenIn situation about disappearing, call described token cancellation interface according to described exit instruction and cancel described token,Specifically comprise step:
After described user interface reception user's exit instruction, obtain the time-out time of described token;
Described user interface judges whether current time exceedes the time-out time of described token, ifBe, think that described token is cancelled, otherwise, call described token and cancel interface cancellationDescribed token.
Wherein, described open platform for example, for providing the platform device of opening API interface, platformServer, access server etc.
Described application provider is generally the computing equipment that third party's applied business is provided, and for exampleTripartite's server, business provide equipment, the side's of application business device.
Described user interface is generally client device, such as PC equipment, mobile terminal etc.
The expired treatment system of token interface of the present invention and method, set up token cancellation and connectMouthful, application provider calls token in good time and cancels interface cancellation token, simultaneously application providerDo not cancel in time in the situation of token, user interface also can be called according to user's exit instructionToken is cancelled interface and is cancelled token, thereby has overcome in prior art according to fixing the overtime of durationTime is cancelled the existing potential safety hazard of token, has realized the cancellation adaptively to token, carriesThe high security of user profile.
Brief description of the drawings
Fig. 1 is the modular structure signal of the expired treatment system of token interface described in the embodiment of the present inventionFigure;
Fig. 2 is the internal module structural representation of applying provider described in the embodiment of the present invention;
Fig. 3 is the internal module structural representation that token is cancelled interface described in the embodiment of the present invention;
Fig. 4 is the internal module structural representation of user interface described in the embodiment of the present invention;
Fig. 5 is the flow chart of the expired processing method of token interface described in the embodiment of the present invention;
Fig. 6 is the careful flow chart of the expired processing method of token interface described in the embodiment of the present invention;
Fig. 7 is the flow process that the cancellation of token described in embodiment of the present invention interface is cancelled described tokenFigure.
Detailed description of the invention
Below in conjunction with drawings and Examples, the specific embodiment of the present invention is done further in detailDescribe. Following examples are used for illustrating the present invention, but are not used for limiting the scope of the invention.
According to the analysis to prior art, overcome the key of problem in prior art and be that token is rawAfter one-tenth, when can be cancelled, original mechanism is to exceed the set time to cancel, alsoBe to judge whether when token overtimely using, again obtain token after overtime. Key of the present inventionPoint is to increase the token cancellation interface for cancelling token in original interface basis.
Token is set and cancels after interface, it is also very heavy when application provider calls token cancellation interfaceApplication provider wants, because likely can select to call order for simplifying exploitation inappropriate opportunityBoard is cancelled interface. For this reason, the application's token cancellation interface is called in following two kinds of situations:
A, ACTIVE CONTROL: called by application provider oneself, within definite a period of time, do not makeWhile using token, cancel this token, to ensure the minimum active period of token, so can improveSecurity;
B, Collaborative Control: triggered by end user, user interface goes to call. Because open flatPlatform can not be determined the principle that application provider whether can strict implement better safe than sorry and initiatively goCall this and cancel interface, therefore Collaborative Control supplementing as ACTIVE CONTROL be set.
By above-mentioned two kinds of control modes are set, can be in the situation that adapts to major applications environmentUnder, ensure that user normally uses, the dangerous time of farthest having limited token simultaneously. ConnectGet off and will be elaborated as follows to the application's system and method:
Fig. 1 is the modular structure signal of the expired treatment system of token interface described in the embodiment of the present inventionFigure, as shown in Figure 1, described system comprises: open platform 100, application provider 200 and useInterface, family 300.
Described open platform 100 comprises: token obtains interface 110, token is cancelled interface 120With the 3rd interface 130.
Described application provider 200 is suitable for calling described token according to user's authorized order and obtainsInterface 110, to obtain token, uses described token to call described the 3rd interface 130 and realizes correspondingApplication, and in the time that described application follow-up no longer needs described token or described applicationAfter completing, call described token and cancel interface 120 to cancel described token. Described application follow-upNo longer need described token, i.e. the carrying out of described application within the foreseeable scheduled timeUse described token to call described the 3rd interface without described application provider 200.
Described user interface 300 is suitable for receiving user's authorized order, and receives moving back of userGo out instruction, and described in described token still calls according to described exit instruction in undissolved situationToken is cancelled interface 120 to cancel described token. Cancel described order according to user's exit instructionBoard, i.e. Collaborative Control mode, initiatively cancels described token as described application provider 200A kind of auxiliary control mode, it fails to cancel in time described order described application provider 200The situation of board is used.
Fig. 2 is described application provider's 200 internal module structural representation, as shown in Figure 2,Described application provider 200 further comprises: token acquiring unit 210, timeouts unit220, overtime monitoring unit 230 and application logical unit 240.
Described token acquiring unit 210 is suitable for calling described order according to described user's authorized orderBoard obtains interface 110 to obtain token.
Described timeouts unit 220 is suitable for obtaining described order in described token acquiring unit 110When board, generate and store the time-out time of described token.
Described overtime monitoring unit 230 is suitable for judging whether current time has exceeded described tokenTime-out time, if so, notify described token acquiring unit 110 to obtain new token.In the time obtaining new token, described token acquiring unit 210 need to regain user's mandateInstruction, now original token is in fact cancelled automatically.
Described application logical unit 240 is suitable for, in the time that described token is not cancelled, using described orderBoard calls described the 3rd interface 130 and realizes corresponding application.
Fig. 3 is the internal module structural representation that described token is cancelled interface, as shown in Figure 3,Described token is cancelled interface 120 and is comprised: overtime judge module 121 and overtime modified module 122.
Described overtime judge module 121, is suitable for extracting institute from described timeouts unit 220State the time-out time of token, and judge when whether current time has exceeded described token overtimeBetween, if so, think that described token is cancelled, otherwise, notify described overtime amendmentModule 122 is revised the time-out time of described token.
Described overtime modified module 122 is suitable for the time-out time of described token to be revised as when currentBetween before time, such as being revised as the last second of current time.
Table 1 is that described token is cancelled a kind of code that the employing PHP language of interface realizes and shown belowExample, table 2 is that relevant parameter implication is wherein explained. Those skilled in the art are according to above-mentionedContent easily replaces with other language and realizes described token cancellation interface.
Table 1 token is cancelled Interface realization example
Table 2 token is cancelled the explanation of interface relevant parameter
Fig. 4 is the internal module structural representation of described user interface 300, as shown in Figure 4, and instituteStating user interface comprises: command reception unit 310 and instruction process unit 320. Described user circleFace is generally positioned in the terminal in the face of end user, such as being positioned on PC.
Described command reception unit 310 is suitable for receiving user's authorized order and exit instruction. Refer toMake receiving element 310 point out user to input corresponding finger by the mode that ejects dialog boxOrder, such as user clicks the confirming button input authorized order in dialog box, user clicks and exitsButton input exit instruction.
Described instruction process unit 320 is suitable for described authorized order to send to described application to provideSide 200, and still in undissolved situation, call institute according to described exit instruction at described tokenState token and cancel interface 120 to cancel described token.
Fig. 5 is the flow chart of the expired processing method of token interface described in the embodiment of the present invention, as Fig. 5Shown in, described method comprises step:
S100: user interface receives user's authorized order, and described authorized order is sent toApplication provider.
S200: described application provider calls the token in open platform according to described authorized orderObtain interface and obtain token.
S400: described application provider uses described token to call the 3rd in described open platformInterface realization is applied accordingly.
S500: described application provider no longer needs described token in described application follow-upTime or described application call token after completing and cancel interface and cancel described token.
S600: described user interface receives user's exit instruction, and not yet gets at described tokenIn situation about disappearing, call described token cancellation interface according to described exit instruction and cancel described token.
Fig. 6 is the careful flow chart of the expired processing method of token interface described in the embodiment of the present invention,As shown in Figure 6, after described step S200, also comprise step S300: described application provider is rawBecome the time-out time of described token, and store described time-out time.
Correspondingly, described step S400 specifically comprises step:
S410: described application provider judges when whether current time exceedes described token overtimeBetween, if so, return to described step S100; Otherwise, execution step S420.
S420: described application provider uses described token to call the 3rd in described open platformInterface realization is applied accordingly.
Described step S600 specifically comprises step:
S610: obtain the overtime of described token after described user interface reception user's exit instructionTime.
S620: described user interface judges when whether current time exceedes described token overtimeBetween, if so, think that described token is cancelled, otherwise, call described token and cancelInterface is cancelled described token.
Wherein, Fig. 7 is that the cancellation of token described in embodiment of the present invention interface is cancelled described tokenFlow chart, as shown in Figure 7, token described in described step S500 and step S600 is cancelled interfaceThe process of cancelling described token (is that application provides in step S500 except calling main body differenceSide is user interface in step S600), concrete steps are all as follows:
P1: described token cancellation interface obtains the time-out time of described token;
P2: described token is cancelled interface and judged when whether current time exceedes described token overtimeBetween, if so, think that described token is cancelled, otherwise, overtime by described tokenTime modification is the time before current time.
Described in the embodiment of the present invention, the expired treatment system of token interface and method, set up token and gotThe interface that disappears, application provider calls token in good time and cancels interface and cancel token, carries in application simultaneouslySupplier does not cancel in the situation of token in time, and user interface also can be according to user's exit instructionCall token and cancel interface and cancel token, thereby overcome in prior art according to fixing durationTime-out time is cancelled the existing potential safety hazard of token, has realized getting adaptively tokenDisappear, improved the security of user profile.
Above embodiment is only for the present invention is described, and limitation of the present invention is not relevantThe those of ordinary skill of technical field, without departing from the spirit and scope of the present invention,Can also make a variety of changes and modification, therefore all technical schemes that are equal to also belong to the present inventionCategory, scope of patent protection of the present invention should be defined by the claims.

Claims (10)

1. the expired treatment system of token interface, comprising: open platform, application providerAnd user interface;
Described open platform comprises: token obtains interface, token is cancelled interface and the 3rd interface;
Described application provider is suitable for calling described token according to user's authorized order and obtains and connectMouth, to obtain token, uses described token to call described the 3rd Interface realization and applies accordingly, withAnd in the time that described application follow-up no longer needs described token or after described application completesCall described token and cancel interface to cancel described token;
Described user interface is suitable for receiving user's authorized order, and receives user's the finger that exitsOrder, and still in undissolved situation, call described token according to described exit instruction at described tokenCancel interface to cancel described token;
Wherein, described token cancellation interface comprises: overtime judge module and overtime modified module;
Described overtime judge module, is suitable for extracting described token from described timeouts unitTime-out time, and judge whether current time has exceeded the time-out time of described token, ifBe, think that described token is cancelled, otherwise, notify described overtime modified module amendmentThe time-out time of described token;
Described overtime modified module is suitable for the time-out time of described token to be revised as current timeTime before.
2. the system as claimed in claim 1, is characterized in that, described application provider comprises:Token acquiring unit;
Described token acquiring unit is suitable for calling described token according to described user's authorized orderObtain interface to obtain token.
3. system as claimed in claim 1 or 2, is characterized in that, described application providesSide also comprises: timeouts unit;
Described timeouts unit is suitable in the time that described token acquiring unit is obtained described token rawBecome and store the time-out time of described token.
4. system as claimed in claim 3, is characterized in that, described application provider alsoComprise: overtime monitoring unit;
Described overtime monitoring unit is suitable for judging whether current time has exceeded described tokenTime-out time, if so, notifies described token acquiring unit to obtain new token.
5. system as claimed in claim 1 or 2, is characterized in that, described application providesSide also comprises: application logical unit;
Described application logical unit is suitable in the time that described token is not cancelled, and uses described token to adjustApply accordingly with described the 3rd Interface realization.
6. system as claimed in claim 1 or 2, is characterized in that, described user interface bagDraw together: command reception unit and instruction process unit;
Described command reception unit is suitable for receiving user's authorized order and exit instruction;
Described instruction process unit is suitable for described authorized order to send to described application provider,And still in undissolved situation, call described token according to described exit instruction at described tokenCancel interface to cancel described token.
7. the expired processing method of token interface, comprises step:
User interface receives user's authorized order, and sends to application to carry described authorized orderSupplier;
The token that described application provider calls in open platform according to described authorized order obtainsInterface obtains token;
Described application provider uses described token to call the 3rd interface in described open platformRealize corresponding application;
Described application provider in the time that described application follow-up no longer needs described token orAfter having applied described in person, call token cancellation interface and cancel described token;
Described user interface receives user's exit instruction, and in still undissolved feelings of described tokenUnder condition, call described token cancellation interface according to described exit instruction and cancel described token;
Wherein, described token is cancelled interface and is cancelled described token, specifically comprises step:
Described token is cancelled interface and is obtained the time-out time of described token, and judges that current time isThe no time-out time that exceedes described token, if so, thinks that described token is cancelled,Otherwise, the time-out time of described token is revised as to the current time time before.
8. method as claimed in claim 7, is characterized in that, described application provider according toDescribed authorized order calls token in open platform and obtains interface and obtain token, also comprises afterwardsStep:
Described application provider generates the time-out time of described token, and stores described when overtimeBetween.
9. method as claimed in claim 7 or 8, is characterized in that described application providerThe 3rd Interface realization that uses described token to call in described open platform is applied accordingly, concreteComprise step:
Described application provider judges whether current time exceedes the time-out time of described token, asFruit is to return to described step: user interface receives user's authorized order, and awards described in inciting somebody to actionPower instruction sends to application provider; Otherwise described application provider uses described token to callThe 3rd Interface realization in described open platform is applied accordingly.
10. method as claimed in claim 7 or 8, is characterized in that, described user interface connectsReceive user's exit instruction, and described token still in undissolved situation according to described in exit fingerOrder is called described token cancellation interface and is cancelled described token, specifically comprises step:
After described user interface reception user's exit instruction, obtain the time-out time of described token;
Described user interface judges whether current time exceedes the time-out time of described token, ifBe, think that described token is cancelled, otherwise, call described token and cancel interface cancellationDescribed token.
CN201210404569.5A 2012-10-22 2012-10-22 A kind of expired treatment system of token interface and method Active CN102891859B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210404569.5A CN102891859B (en) 2012-10-22 2012-10-22 A kind of expired treatment system of token interface and method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210404569.5A CN102891859B (en) 2012-10-22 2012-10-22 A kind of expired treatment system of token interface and method

Publications (2)

Publication Number Publication Date
CN102891859A CN102891859A (en) 2013-01-23
CN102891859B true CN102891859B (en) 2016-05-25

Family

ID=47535226

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210404569.5A Active CN102891859B (en) 2012-10-22 2012-10-22 A kind of expired treatment system of token interface and method

Country Status (1)

Country Link
CN (1) CN102891859B (en)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102904894B (en) * 2012-10-22 2016-12-21 北京奇虎科技有限公司 Token management method and system
CN106411825A (en) * 2015-08-03 2017-02-15 天脉聚源(北京)科技有限公司 WeChat access token acquisition method and system thereof
AU2017332645B2 (en) 2016-09-23 2019-12-19 Apple Inc. Managing credentials of multiple users on an electronic device
CN111600864B (en) * 2020-05-11 2022-06-14 杭州安恒信息技术股份有限公司 Method and device for verifying access service interface based on token authentication multidimensional

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101790866A (en) * 2007-07-18 2010-07-28 摩托罗拉公司 The dynamic authorization management based on token of rfid system
CN101894088A (en) * 2010-07-21 2010-11-24 中兴通讯股份有限公司 Method and device for solving conflict of multiple hosts on I2C bus
CN102394887A (en) * 2011-11-10 2012-03-28 杭州东信北邮信息技术有限公司 OAuth protocol-based safety certificate method of open platform and system thereof

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101790866A (en) * 2007-07-18 2010-07-28 摩托罗拉公司 The dynamic authorization management based on token of rfid system
CN101894088A (en) * 2010-07-21 2010-11-24 中兴通讯股份有限公司 Method and device for solving conflict of multiple hosts on I2C bus
CN102394887A (en) * 2011-11-10 2012-03-28 杭州东信北邮信息技术有限公司 OAuth protocol-based safety certificate method of open platform and system thereof

Also Published As

Publication number Publication date
CN102891859A (en) 2013-01-23

Similar Documents

Publication Publication Date Title
Conti et al. Crepe: Context-related policy enforcement for android
US20190273746A1 (en) Microservice architecture for identity and access management
CN102891859B (en) A kind of expired treatment system of token interface and method
US8990920B2 (en) Creating a virtual private network (VPN) for a single app on an internet-enabled device or system
US8812868B2 (en) Secure execution of unsecured apps on a device
CN110995450B (en) Authentication and authorization method and system based on Kubernetes
US20140208397A1 (en) Geographical restrictions for application usage on a mobile device
US20120210443A1 (en) Securing and managing apps on a device
US20070294376A1 (en) Method, apparatus and program product for software provisioning
US7600265B2 (en) System and method for applying an OMA DRM permission model to JAVA MIDP applications
WO2001098876A3 (en) Filtering a permission set using permission requests associated with a code assembly
WO2006010707A1 (en) A generic declarative authorization scheme for java
CA2830493A1 (en) Secure execution of unsecured apps on a device
WO2006036959A3 (en) Electronic computer system secured form unauthorized access to and manipulation of data
CN103258159A (en) Extensible and/or distributed authorization system and/or methods of providing the same
CN103544447A (en) Method and terminal for preventing leakage of confidential information according to Android system
CN105550595A (en) Private data access method and system for intelligent communication equipment
US20160055344A1 (en) Data loss prevention during app execution using e-mail enforcement on a mobile device
CN110333917A (en) Data processing method, device, equipment and readable storage medium storing program for executing based on micro services
CN105094996A (en) Security-enhancing method and system of Android system based on dynamic authority verification
CN103731802A (en) Device management method based on Android mobile terminal
CN112235303A (en) Account logout method and device and computer equipment
KR101418373B1 (en) Apparatus for providing virtual mobile terminal based on cloud environment
CN102984044A (en) Method and device based on virtual private network (VPN) to achieve data transmission security
CN102904894B (en) Token management method and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
TR01 Transfer of patent right

Effective date of registration: 20220725

Address after: Room 801, 8th floor, No. 104, floors 1-19, building 2, yard 6, Jiuxianqiao Road, Chaoyang District, Beijing 100015

Patentee after: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Address before: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park)

Patentee before: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Patentee before: Qizhi software (Beijing) Co.,Ltd.

TR01 Transfer of patent right