作者: Charles W. Knouse , Francisco J. Villavicencio
DOI:
关键词:
摘要: A method for authenticating, authorizing, and logging comprises: intercepting (752) requests from a user's browser to web-enabled resource, which request is sent, if the user has been previously authenticated protected with valid authentication cookie; determining (753) whether resource by an and/or authorization rule; otherwise, granting (795) access resource; protected, (754) cookie received. If received, attempting (756) authorize user; otherwise: (760) authenticate resource. unsuccessfully as determined at (762), then: (764) unsuccessful authentication, performing (766) do failure actions deny (774) successful success actions, passing (780) 12 be stored 12, determine authorized successfully (790), (792) of (794) (796) authorization, (798) denying