Nova Patents
EP1598729B1

Access control of resources using tokens

Abstract

This record has no abstract on file.

EP1598729B1, drawing sheet 1
Sheet 1 of 3

Term

Term ended

Expired 10 May 2025, 1.4 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

10 claims: 3 independent, 7 dependent

  1. 1
    A system for generating and using an electronic token (200) having a token grantee identifier (204), a token grantor identifier (202), and a resource access control field (206), the system comprising:a processor for receiving and transmitting data;and a memory coupled to the processor, the memory having stored therein instructions causing the processor to: generate the electronic token (200) based on the token grantee identifier (204), the token grantor identifier (202), and the resource access control field (206), wherein the resource access control field (206) indicates control of additional limitations of token grantee access to a resource as specified by the token grantor, the resource comprising a messaging service associated with the token grantor;transmit the electronic token (200) to a token grantee computer system;upon receiving a message from the token grantee computer system, the message having the electronic token embedded therein, permit access to the resource requested subject to the limitations in the resource access field of the message;and screen all messages except those with an embedded token meeting the limitations in the resource access field.
  2. 7
    The system of any preceding claim, wherein the message comprises an email.
  3. 8
    A method for generating and using an electronic token (200) having a token grantee identifier (204), a token grantor identifier (202), and a resource access control field (206), the method comprising the steps of:generating, by a token grantor, the electronic token (200) based on the token grantee identifier (204), the token grantor identifier (202), and the resource access control field (206), wherein the resource access control field (206) indicates control of additional limitations of token grantee access to a resource as specified by the token grantor, the resource comprising a messaging service associated with the token grantor;transmitting, by the token grantor, the electronic token (200) to a token grantee computer system;receiving, by a second computer system controlling access to the resource requested by the token grantee computer system, a message from the token grantee computer system, the message having embedded therein the electronic token;and permitting, by the second computer system, access to the resource requested subject to the limitations in the resource access field of the message, wherein the second computer system screens all messages except those with an embedded token meeting the limitations in the resource access field.