IP Library Granted Patent US 11,271,923
Granted Patent B2
US 11,271,923 · App. 16/550,535 · Granted Mar 8, 2022

Information processing apparatus, authorization system, and verification method

Inventor: Ryo Kishimoto (Kawasaki, JP)
Assignee: Canon Kabushiki Kaisha
H04L63/0807H04L9/0825H04L9/3213H04L9/3247H04L63/0823H04L63/0884
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,271,923
App. No.
16/550,535
Granted
Mar 8, 2022
Kind
B2
Abstract

According to the present invention, an information processing apparatus that verifies a signed token is provided. The apparatus comprises a holding unit for holding key information for verifying the signed token, an obtainment unit for obtaining new key information from a server that provides the key information, and holding the new key information in the holding unit, if the key information for verifying a received signed token is not held in the holding unit, and a verification unit for verifying the signed token using the key information if the key information for verifying the received signed token is held in the holding unit.

Claims (23)

1. An information processing apparatus, as a resource server, that performs verification of a signed token, the information processing apparatus comprising:

a storage holding first key information for the verification;

at least one memory storing instructions, and

at least one processor to execute the instructions to cause the information processing apparatus to:

receive a signed token;

obtain second key information from an authorization server that provides the second key information, if key information for the received signed token is not held in the storage;

hold the second key information in the storage; and

perform, if the key information for the received signed token is held in the storage, the verification of the received signed token using the key information,

wherein if the verification of the signed token received along with a request has succeeded, a resource is provided in response to the request.

2. The information processing apparatus according to claim 1 , wherein, if the key information for the received signed token is not held in the storage and the received signed token was issued after an obtainment time of the first key information, the second key information is obtained from the authorization server, and

wherein the instructions further cause the information processing apparatus to save an obtainment time at which the second key information was obtained from the authorization server.

3. The information processing apparatus according to claim 1 ,

wherein the received signed token includes identification information of key information, and

wherein, if the key information for the received signed token is not held in the storage and the identification information included in the received signed token has been issued by the authorization server, the second key information is obtained from the authorization server.

4. The information processing apparatus according to claim 1 ,

wherein the information processing apparatus is connected to the authorization server and a client that sends the request for the resource along with the signed token provided by the authorization server.

5. A signed token verification method carried out by an information processing apparatus that performs verification of a signed token as a resource server, the method comprising:

holding first key information for the verification in a storage;

receiving a signed token;

obtaining second key information from an authorization server that provides the second key information, if key information for the received signed token is not held in the storage;

holding the second key information in the storage; and

performing, if the key information for the received signed token is held in the storage, the verification of the received signed token using the key information,

wherein if the verification of the signed token received along with a request has succeeded, a resource is provided in response to the request.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 11, 2019
From: KISHIMOTO, RYO
To: CANON KABUSHIKI KAISHA
Reel/Frame 050977/0811 →
Priority Claims (1)
JP JP2018-162103 · Aug 30, 2018 · national
Continuity (1)
Related Publication 20200076791A1 · Mar 5, 2020
Cited By (1)
US 12,671,692