US2017063931A1PendingUtilityA1

Service Layer Dynamic Authorization

Assignee: Convida Wireless LLCPriority: Aug 28, 2015Filed: Aug 26, 2016Published: Mar 2, 2017
Est. expiryAug 28, 2035(~9.1 yrs left)· nominal 20-yr term from priority
H04L 63/10G06Q 20/4016H04L 67/12H04L 63/20H04W 4/70G06Q 20/401H04L 67/16H04W 12/084H04L 63/16G06Q 20/4014H04W 12/086G06Q 20/40
48
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

An extensible policy-based service layer dynamic authorization framework can allow a service layer to determine whether or not to grant or deny a registrant access to a resource or service hosted by the service layer for which the registrant currently lacks the proper privileges to access. This method can also enable a service layer to dynamically update its statically configured authorization privileges (by leveraging its dynamic authorization results) such that future requests from the same registrant and to the same resource and service do not require dynamic authorization to be performed.

Claims

exact text as granted — not AI-modified
What is claimed: 
     
         1 . An apparatus comprising a processor and a memory, the apparatus further including computer-executable instructions stored in the memory of the apparatus which, when executed by the processor of the apparatus, cause the apparatus to:
 receive a request at a service layer at the apparatus;   at the service layer, determine whether an originator of the request has the proper static privileges to access a targeted resource; and   if the originator of the request does not have the proper static privileges to access the targeted resource, evaluate the request using dynamic authorization and allow or reject the request based on the dynamic authorization.   
     
     
         2 . The apparatus of  claim 1 , wherein the apparatus consults with a consulting entity to evaluate the request using dynamic authorization. 
     
     
         3 . The apparatus of  claim 2 , wherein the service layer is configured with a policy that includes contact information for the consulting entity. 
     
     
         4 . The apparatus of  claim 2 , wherein the consulting entity sends a list of granted privileges and a lifetime associated with the granted privileges in a response to the service layer. 
     
     
         5 . The apparatus of  claim 4 , wherein the apparatus updates static policies by adding a requestor as specified in the list of granted privileges. 
     
     
         6 . The apparatus of  claim 5 , wherein the requestor is temporarily added to the static policies 
     
     
         7 . The apparatus of  claim 1 , wherein the apparatus receives dynamic authorization policies. 
     
     
         8 . The apparatus of  claim 1 , wherein the apparatus does the dynamic authorization after receiving an indication that a requester has made a payment. 
     
     
         9 . The apparatus of  claim 1 , wherein the apparatus does the dynamic authorization after receiving an indication that a requester has fulfilled barter conditions. 
     
     
         10 . The apparatus of  claim 1 , wherein the apparatus uses reputation information about a requester in the authenticated using reputation information in the dynamic authorization. 
     
     
         11 . A method for use by an apparatus, wherein the apparatus comprises a processor and memory, and wherein the apparatuses further includes computer-executable instructions stored in the memory which, when executed by the processor, perform functions of a method comprising:
 receiving a request at a service layer at the apparatus;   at the service layer, determining whether an originator of the request has the proper static privileges to access a targeted resource; and   if the originator of the request does not have the proper static privileges to access the targeted resource, evaluating the request using dynamic authorization and allowing or rejecting the request based on the dynamic authorization.   
     
     
         12 . The method of  claim 11 , wherein the apparatus consults with a consulting entity to evaluate the request using dynamic authorization. 
     
     
         13 . The method of  claim 12 , wherein the service layer is configured with a policy that includes contact information for the consulting entity. 
     
     
         14 . The method of  claim 12 , wherein the consulting entity sends a list of granted privileges and a lifetime associated with the granted privileges in a response to the service layer. 
     
     
         15 . The method of  claim 14 , wherein the apparatus updates static policies by adding a requestor as specified in the list of granted privileges. 
     
     
         16 . The method of  claim 15 , wherein the requestor is temporarily added to the static policies 
     
     
         17 . The method of  claim 11 , wherein the apparatus receives dynamic authorization policies. 
     
     
         18 . The method of  claim 11 , wherein the apparatus does the dynamic authorization after receiving an indication that a requester has made a payment. 
     
     
         19 . The method of  claim 11 , wherein the apparatus does the dynamic authorization after receiving an indication that a requester has fulfilled barter conditions. 
     
     
         20 . The method of  claim 11 , wherein the apparatus uses reputation information about a requester in the authenticated using reputation information in the dynamic authorization.

Join the waitlist — get patent alerts

Track US2017063931A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.