IP Library Granted Patent US 7,089,584
Granted Patent B1
US 7,089,584 · App. 09/578,346 · Granted Aug 8, 2006

Security architecture for integration of enterprise information system with J2EE platform

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,089,584
App. No.
09/578,346
Granted
Aug 8, 2006
Kind
B1
Abstract

A standard for security management in a client server computer system is disclosed. In one aspect, the present invention specifies a security contract between an application server and a resource adapter, supporting access to an enterprise information system by passing a connection request from the resource adapter to the application server, propagating a a security context from the application server to the resource adapter. The security contract includes a subject class representing a grouping of related information for a single entity, and security-related attributes of the subject class.

Claims (14)

1. A method of providing security in a computer system having a client, an application server, an application component, a resource adapter and a principal mapping module, and a subject instance having the method comprising the steps of:

invoking a connection request method by the application component on the resource adapter without passing in any security arguments;

the resource adapter passes the connection request to the application server via a connection factory;

the application server is configured to use the principal mapping module such that the principal mapping module takes the subject instance with a caller principal and returns the subject instance with a valid resource principal and password credential instance to the application server; and an enterprise

establishing a managed connection between the application server and the enterprise information system using the valid resource principal and password credential instance generated by the principle mapping module.

2. The method of claim 1 , wherein said security includes a security context that contains support for Java authentication and authorization service based pluggable authentication.

3. The method of claim 1 , further comprising a generic credential interface.

4. The method of claim 1 , further comprising a security principal interface.

5. The method of claim 1 , wherein the managed connection includes a security contract data structure including:

a subject class;

a generic credential interface;

a password credential interface; and

a java security principal interface.

6. The method of claim 1 , wherein the security is propagated from said application server to the resource adapter.

Assignments (1)
MERGER AND CHANGE OF NAME Recorded Dec 16, 2015
From: ORACLE USA, INC.; SUN MICROSYSTEMS, INC.; ORACLE AMERICA, INC.
To: ORACLE AMERICA, INC.
Reel/Frame 037302/0579 →