EP2242230A2

Methods and apparatus to provide layered security for interface access control

Abstract

Example methods and apparatus to provide layered security for interface access control are disclosed. A disclosed example method includes receiving a connect message in a first server from a client application to access at least one server endpoint, in response to receiving the connect message, opening a session between the at least one server endpoint and the client application if the session is authorized to be opened, receiving a request from the client application to open an endpoint that provides at least one of read access, write access, or subscribe access to at least one resource, opening the endpoint within the open session after determining that the client application is authorized to access the at least one resource via the endpoint, receiving a request from the client application to assign a selection of the at least one authorized resource to the endpoint, assigning the at least one selected resource to the endpoint, and granting the client application access to the at least one resource via the endpoint.

EP2242230A2, drawing sheet 1
Sheet 1 of 7

Term

3.6 yearsto projected expiry

Projected expiry 14 April 2030, counted from filing; an application has no term until it is granted.

  1. Priority
  2. Filed
  3. Published
  4. Today
  5. Projected expiry

15 claims: 2 independent, 13 dependent

  1. 1
    A method to provide layered security for interface access control, the method comprising:receiving a connect message in a first server from a client application to access at least one server endpoint;in response to receiving the connect message, opening a session between the at least one server endpoint and the client application if the session is authorized to be opened;receiving a request from the client application to open an endpoint that provides at least one of read access, write access, or subscribe access to at least one resource;opening the endpoint within the open session after determining that the client application is authorized to access the at least one resource via the endpoint;receiving a request from the client application to assign a selection of the at least one authorized resource to the endpoint;assigning the at least one selected resource to the endpoint;and granting the client application access to the at least one resource via the endpoint.
  2. 14
    An apparatus to provide layered security for interface access control, the apparatus comprising:a first server programmed to: receive a connect message from a client application to access at least one server endpoint;in response to receiving the connect message, open a session between the at least one server endpoint and the client application if the session is authorized to be opened;receive a request from the client application to open an endpoint that provides at least one of read access, write access, or subscribe access to at least one resource;open the endpoint within the open session after determining that the client application is authorized to access the at least one resource via the endpoint;receive a request from the client application to assign a selection of the at least one authorized resource to the endpoint;assign the at least one selected resource to the endpoint;and grant the client application access to the at least one resource via the endpoint.
  3. 15
    A machine-accessible medium having instructions stored thereon that, when executed, cause a machine to perform the method of claims 1-13.