US2022166764A1PendingUtilityA1
Authenticating computing system requests with an unknown destination across tenants of a multi-tenant system
Est. expiryJun 29, 2038(~11.9 yrs left)· nominal 20-yr term from priority
H04L 67/1097H04L 63/0442H04L 63/0807H04W 12/08H04L 63/0876H04W 12/06G06F 21/6218G06F 16/95H04L 63/10H04L 63/104H04L 63/126H04L 63/08
53
PatentIndex Score
0
Cited by
0
References
0
Claims
Abstract
Disclosed are some implementations of systems, apparatus, methods and computer program products for facilitating the authentication of computing system requests with an unknown destination across tenants of at least one multi-tenant database system. Authentication is facilitated using an intermediate system that is accessible by and independent from the tenants of the multi-tenant database system.
Claims
exact text as granted — not AI-modified1 - 20 . (canceled)
21 . A system for directory management for managing identity and access by at least automating access request workflows and access assignments, the system comprising:
a database system implemented using a server system, the database system configurable to cause: adding, for a directory, a connected organization for collaboration; creating an access data package in the directory, the access data package including a bundle of resources for at least working on a project and/or performing a task, the access data package being useable to govern access for users associated with the connected organization; enabling, for one or more of the users associated with the connected organization, requests for access to the access data package; obtaining, from a device of a user for which requests for access is enabled, a request for access to the access data package; processing the request to generate an approval; assigning, to the user, access to one or more resources of the bundle of resources in the access data package; and sending, to the user device, an electronic communication indicating that access was delivered.
22 . The system of claim 1 , wherein the access data package further includes one or more policies defining one or more rules for assignment to the access data package.
23 . The system of claim 2 , wherein a policy can be used to ensure that one or more of: an appropriate user is able to request access, there is an approver for a request, or access to a resource is time-limited.
24 . The system of claim 1 , wherein access to the access data package is defined with one or more policies enabling one or more sets of users associated with one or more directories to request access.
25 . The system of claim 1 , wherein the bundle of resources includes one or more of: one or more groups, one or more applications, or one or more sites.
26 . The system of claim 1 , the database system further configurable to cause:
creating a user account in a directory of the user.
27 . The system of claim 1 , the database system further configurable to cause:
providing, to the user, access to the one or more resources via at least the electronic communication.
28 . A computer program product comprising computer-readable program code capable of being executed by one or more processors when retrieved from a non-transitory computer-readable medium, the program code comprising computer-readable instructions configurable to cause:
adding, for a directory, a connected organization for collaboration; creating an access data package in the directory, the access data package including a bundle of resources for at least working on a project and/or performing a task, the access data package being useable to govern access for users associated with the connected organization; enabling, for one or more of the users associated with the connected organization, requests for access to the access data package; obtaining, from a device of a user for which requests for access is enabled, a request for access to the access data package; processing the request to generate an approval; assigning, to the user, access to one or more resources of the bundle of resources in the access data package; and sending, to the user device, an electronic communication indicating that access was delivered.
29 . The computer program product of claim 28 , wherein the access data package further includes one or more policies defining one or more rules for assignment to the access data package.
30 . The computer program product of claim 29 , wherein a policy can be used to ensure that one or more of: an appropriate user is able to request access, there is an approver for a request, or access to a resource is time-limited.
31 . The computer program product of claim 28 , wherein access to the access data package is defined with one or more policies enabling one or more sets of users associated with one or more directories to request access.
32 . The computer program product of claim 28 , wherein the bundle of resources includes one or more of: one or more groups, one or more applications, or one or more sites.
33 . The computer program product of claim 28 , the instructions further configurable to cause:
creating a user account in a directory of the user.
34 . The computer program product of claim 28 , the instructions further configurable to cause:
providing, to the user, access to the one or more resources via at least the electronic communication.
35 . A computer-implemented method comprising:
adding, for a directory, a connected organization for collaboration; creating an access data package in the directory, the access data package including a bundle of resources for at least working on a project and/or performing a task, the access data package being useable to govern access for users associated with the connected organization; enabling, for one or more of the users associated with the connected organization, requests for access to the access data package; obtaining, from a device of a user for which requests for access is enabled, a request for access to the access data package; processing the request to generate an approval; assigning, to the user, access to one or more resources of the bundle of resources in the access data package; and sending, to the user device, an electronic communication indicating that access was delivered.
36 . The method of claim 35 , wherein the access data package further includes one or more policies defining one or more rules for assignment to the access data package.
37 . The method of claim 36 , wherein a policy can be used to ensure that one or more of: an appropriate user is able to request access, there is an approver for a request, or access to a resource is time-limited.
38 . The method of claim 35 , wherein access to the access data package is defined with one or more policies enabling one or more sets of users associated with one or more directories to request access.
39 . The method of claim 35 , wherein the bundle of resources includes one or more of: one or more groups, one or more applications, or one or more sites.
40 . The method of claim 35 , further comprising:
creating a user account in a directory of the user.Join the waitlist — get patent alerts
Track US2022166764A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.