IP Library › Granted Patent US 12,726,468
Granted Patent B2
US 12,726,468 · App. 18/903,870 · Granted Sep 1, 2026

Single sign-on enabled with OAuth token

Inventors: Mayank Maria (Bangalore, IN); Aarathi Balakrishnan (Bangalore, IN); Dharmvir Singh (Bangalore, IN); Madhu Martin (Bangalore, IN); Vikas Pooven Chathoth (Bangalore, IN); Vamsi Motukuru (Monmouth Junction, NJ)
Assignee: ORACLE INTERNATIONAL CORPORATION
H04L63/0815H04L63/0853H04L63/108
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,726,468
App. No.
18/903,870
Granted
Sep 1, 2026
Kind
B2
Abstract

Techniques are described for providing session management functionalities using an access token (e.g., an Open Authorization (OAuth) access token). Upon successful user authentication, a session (e.g., a single sign-on session) is created for the user along with a user identity token that includes information identifying the session. The user identity token is presentable in an access token request sent to an access token issuer authority (e.g., an OAuth server). Upon receiving the access token request, the user identity token is parsed to identify and validate the session against information stored for the session. The validation can include various session management-related checks. If the validation is successful, the token issuer authority generates the access token. In this manner, the access token that is generated is linked to the session. The access token can then be used by an application to gain access to a protected resource.

Claims (37)

1 . A computer-implemented method comprising:

creating, by a first server, a Single Sign-On (SSO) session for a user;

storing, by the first server, session information associated with the SSO session, the session information including a session identifier; and

sending, by the first server, the session identifier to an application, wherein the application sends an access token request including the session identifier to a second server, the second server retrieves the session information based on the session identifier, the second server uses the session information to determine that the SSO session is valid, wherein the second server determines that the SSO session is valid at least by determining a session expiration time based on the session information, determining that the session expiration time has not yet been reached, determining a timeout duration based on the session information, and determining that the SSO session has not timed out based upon the timeout duration, wherein the second server generates an access token in response to determining that the SSO session is valid, where the access token provides access to a protected resource, and wherein the second server sends the access token to the application to enable the application to use the access token for accessing the protected resource.

2 . The method of claim 1 , wherein the session information includes an association between the SSO session and the user, and further comprising:

generating, by the first server, a user identity token, the user identity token including information identifying the user and the session identifier associated with the SSO session, wherein sending the session identifier to the application includes sending the user identity token to the application.

3 . The method of claim 2 , wherein the access token is different than the user identity token.

4 . The method of claim 2 , wherein the access token request includes the user identity token, and wherein the second server determines that the SSO session is valid further by identifying the user associated with the SSO session based on the session information in the user identity token, and determining that the user identifying information in the user identity token matches the user associated with the SSO session.

5 . The method of claim 2 , wherein the second server generates the access token based on the user identity token, thereby causing the access token to be linked to the SSO session, wherein the application uses the access token to access the protected resource by providing the access token in an access request, and wherein the application uses the protected resource to provide application functionality or processes the protected resource to generate graphical output for display on a Web browser.

6 . The method of claim 2 , wherein the user identity token is a JavaScript Object Notation (JSON) Web Token, and the access token is an Open Authorization (OAuth) access token.

7 . The method of claim 6 , wherein the first server is an access manager that is included in an access management system, and the second server is an Open Authorization (OAuth) server that is included in the access management system.

8 . The method of claim 1 , further comprising:

sending, to the application, a request for user credentials;

receiving, from the application, the user credentials; and

authenticating the user based on the user credentials, wherein creating the SSO session for the user is in response to a successful authentication.

9 . A computer system comprising:

one or more processors; and

a memory coupled to the one or more processors, the memory storing instructions that, when executed by the one or more processors, cause the one or more processors to:

create a Single Sign-On (SSO) session for a user;

store session information associated with the SSO session, the session information including a session identifier; and

send the session identifier to an application, wherein the application sends an access token request including the session identifier to a second server, the second server retrieves the session information based on the session identifier, the second server uses the session information to determine that the SSO session is valid, wherein the second server determines that the SSO session is valid at least by determining a session expiration time based on the session information, determining that the session expiration time has not yet been reached, determining a timeout duration based on the session information, and determining that the SSO session has not timed out based upon the timeout duration, wherein the second server generates an access token in response to determining that the SSO session is valid, where the access token provides access to a protected resource, and wherein the second server sends the access token to the application to enable the application to use the access token for accessing the protected resource.

10 . The computer system of claim 9 , wherein the session information includes an association between the SSO session and the user, and wherein the instructions, when executed by the one or more processors, further cause the one or more processors to:

generate a user identity token including information identifying the user and the session identifier associated with the SSO session, wherein sending the session identifier to the application includes sending the user identity token to the application.

11 . The computer system of claim 10 , wherein sending the user identity token to the application includes sending a session cookie including the user identity token or sending a token response with a header including the user identity token.

12 . The computer system of claim 10 , wherein the access token request includes the user identity token, and the second server determines that the SSO session is valid further by identifying the user associated with the SSO session based on the session information in the user identity token, and determining that the information identifying the user in the user identity token matches the user associated with the SSO session.

13 . The computer system of claim 10 , wherein the access token is different than the user identity token.

14 . The computer system of claim 9 , wherein the instructions further cause the one or more processors to:

receive a request from the second server for the session information associated with the session identifier; and

provide the session information to the second server.

15 . The computer system of claim 14 , wherein the computer system is part of a cluster in a data center, and the cluster is associated with a cluster identifier.

16 . The computer system of claim 15 , wherein the second server determines the cluster identifier from the access token request.

17 . A non-transitory computer-readable storage medium storing instructions that, when executed by one or more processors of a computer system, cause the one or more processors to perform processing comprising:

creating a Single Sign-On (SSO) session for a user;

storing session information associated with the SSO session, the session information including a session identifier; and

sending the session identifier to an application, wherein the application sends an access token request including the session identifier to a second server, the second server retrieves the session information based on the session identifier, the second server uses the session information to determine that the SSO session is valid, wherein the second server determines that the SSO session is valid at least by determining a session expiration time based on the session information, determining that the session expiration time has not yet been reached, determining a timeout duration based on the session information, and determining that the SSO session has not timed out based upon the timeout duration, wherein the second server generates an access token in response to determining that the SSO session is valid, where the access token provides access to a protected resource, and wherein the second server sends the access token to the application to enable the application to use the access token for accessing the protected resource.

18 . The non-transitory computer-readable storage medium of claim 17 , wherein the processing further comprises:

generating a user identity token including information identifying the user and the session identifier associated with the SSO session, wherein sending the session identifier to the application includes sending the user identity token to the application, wherein the access token request includes the user identity token, and wherein the second server generates the access token based on the user identity token, thereby causing the access token to be linked to the SSO session.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 16, 2024
From: MARIA, MAYANK; BALAKRISHNAN, AARATHI; SINGH, DHARMVIR; MARTIN, MADHU; CHATHOTH, VIKAS POOVEN; MOTUKURU, VAMSI
To: ORACLE INTERNATIONAL CORPORATION
Reel/Frame 068916/0632 →
Continuity (5)
Continuation 18343345 · Jun 28, 2023
Continuation 17684949 · Mar 2, 2022
Continuation 16164709 · Oct 18, 2018
Provisional Application 62678895 · May 31, 2018
Related Publication 20250023862A1 · Jan 16, 2025
References Cited (353)
US 5720025A · Wilkes et al. · 1998 [cited by applicant]
US 5987627A · Rawlings, III · 1999 [cited by applicant]
US 6052739A · Bopardikar et al. · 2000 [cited by applicant]
US 6484276B1 · Singh et al. · 2002 [cited by applicant]
US 6516416B2 · Gregg et al. · 2003 [cited by applicant]
US 6996808B1 · Niewiadomski et al. · 2006 [cited by applicant]
US 7290288B2 · Gregg et al. · 2007 [cited by applicant]
US 7685206B1 · Mathew et al. · 2010 [cited by applicant]
US 7784092B2 · Pearson et al. · 2010 [cited by applicant]
US 7788494B2 · Aissi et al. · 2010 [cited by applicant]
US 7836484B2 · Pardo-Blazquez et al. · 2010 [cited by applicant]
US 7920631B2 · Vicars-Harris · 2011 [cited by applicant]
US 7984157B2 · Panasyuk et al. · 2011 [cited by applicant]
US 8364970B2 · Fu · 2013 [cited by applicant]
US 8474017B2 · Schultz et al. · 2013 [cited by applicant]
US 8533796B1 · Shenoy et al. · 2013 [cited by applicant]
US 8627151B2 · Vingralek · 2014 [cited by applicant]
US 8667579B2 · Leeder · 2014 [cited by applicant]
US 8763102B2 · Furman et al. · 2014 [cited by applicant]
US 8849858B2 · Lim · 2014 [cited by applicant]
US 8893293B1 · Schmoyer et al. · 2014 [cited by applicant]
US 8935757B2 · Srinivasan et al. · 2015 [cited by applicant]
US 9003050B2 · Karlsson et al. · 2015 [cited by applicant]
US 9009806B2 · Hyland et al. · 2015 [cited by applicant]
US 9043886B2 · Srinivasan et al. · 2015 [cited by applicant]
US 9129112B2 · Boyer et al. · 2015 [cited by applicant]
US 9197623B2 · Srinivasan et al. · 2015 [cited by applicant]
US 9237145B2 · Sondhi et al. · 2016 [cited by applicant]
US 9246893B2 · Boyer et al. · 2016 [cited by applicant]
US 9344422B2 · Aamir et al. · 2016 [cited by applicant]
US 9350718B2 · Sondhi et al. · 2016 [cited by applicant]
US 9374356B2 · Sondhi et al. · 2016 [cited by applicant]
US 9407628B2 · Sondhi et al. · 2016 [cited by applicant]
US 9450963B2 · Srinivasan et al. · 2016 [cited by applicant]
US 9525684B1 · Brandwine · 2016 [cited by applicant]
US 9531697B2 · Sondhi et al. · 2016 [cited by applicant]
US 9544294B2 · Srinivasan et al. · 2017 [cited by applicant]
US 9565178B2 · Sondhi et al. · 2017 [cited by applicant]
US 9578014B2 · Sondhi et al. · 2017 [cited by applicant]
US 9699170B2 · Sondhi et al. · 2017 [cited by applicant]
US 9769147B2 · Mathew et al. · 2017 [cited by applicant]
US 9860234B2 · Sondhi et al. · 2018 [cited by applicant]
US 10084823B2 · Sondhi et al. · 2018 [cited by applicant]
US 11303627B2 · Maria et al. · 2022 [cited by applicant]
US 11736469B2 · Maria et al. · 2023 [cited by applicant]
US 20010047365A1 · Yonaitis · 2001 [cited by applicant]
US 20010047510A1 · Angel et al. · 2001 [cited by applicant]
US 20010056354A1 · Feit et al. · 2001 [cited by applicant]
US 20020073402A1 · Sangavarapu et al. · 2002 [cited by applicant]
US 20020095395A1 · Larson et al. · 2002 [cited by applicant]
US 20020101858A1 · Stuart et al. · 2002 [cited by applicant]
US 20020124139A1 · Baek et al. · 2002 [cited by applicant]
US 20020184535A1 · Moaven et al. · 2002 [cited by applicant]
US 20030097608A1 · Rodeheffer et al. · 2003 [cited by applicant]
US 20030182460A1 · Khare · 2003 [cited by applicant]
US 20040046789A1 · Inanoria · 2004 [cited by applicant]
US 20040128558A1 · Barrett · 2004 [cited by applicant]
US 20040172640A1 · Luo et al. · 2004 [cited by applicant]
US 20040193808A1 · Spencer · 2004 [cited by applicant]
US 20040215610A1 · Dixon et al. · 2004 [cited by applicant]
US 20050033983A1 · Takekawa et al. · 2005 [cited by applicant]
US 20050060548A1 · Allen · 2005 [cited by applicant]
US 20060021019A1 · Hinton et al. · 2006 [cited by applicant]
US 20060095779A9 · Bhat et al. · 2006 [cited by applicant]
US 20060190934A1 · Kielstra et al. · 2006 [cited by applicant]
US 20060206931A1 · Dillaway et al. · 2006 [cited by applicant]
US 20060218625A1 · Pearson et al. · 2006 [cited by applicant]
US 20060271547A1 · Chen et al. · 2006 [cited by applicant]
US 20070006299A1 · Elbury et al. · 2007 [cited by applicant]
US 20070016696A1 · Jerrard-Dunne et al. · 2007 [cited by applicant]
US 20070016961A1 · Vogler et al. · 2007 [cited by applicant]
US 20070055602A1 · Mohn · 2007 [cited by applicant]
US 20070157134A1 · Cheng et al. · 2007 [cited by applicant]
US 20070250539A1 · Montgomery · 2007 [cited by applicant]
US 20070282942A1 · Bailey et al. · 2007 [cited by applicant]
US 20070288644A1 · Rojas et al. · 2007 [cited by applicant]
US 20080010455A1 · Holtzman et al. · 2008 [cited by applicant]
US 20080134311A1 · Medvinsky et al. · 2008 [cited by applicant]
US 20080307300A1 · Kitayama et al. · 2008 [cited by applicant]
US 20090013310A1 · Arner et al. · 2009 [cited by applicant]
US 20090044103A1 · Chalecki et al. · 2009 [cited by applicant]
US 20090113527A1 · Naaman et al. · 2009 [cited by applicant]
US 20090193507A1 · Ibrahim · 2009 [cited by applicant]
US 20090228716A1 · Poston et al. · 2009 [cited by applicant]
US 20090240728A1 · Shukla et al. · 2009 [cited by applicant]
US 20090292927A1 · Wenzel et al. · 2009 [cited by applicant]
US 20090296936A1 · Lie et al. · 2009 [cited by applicant]
US 20090300355A1 · Crane et al. · 2009 [cited by applicant]
US 20100011421A1 · Chari et al. · 2010 [cited by applicant]
US 20100042396A1 · Cassani et al. · 2010 [cited by applicant]
US 20100043065A1 · Bray et al. · 2010 [cited by applicant]
US 20100100952A1 · Sample et al. · 2010 [cited by applicant]
US 20100145718A1 · Elmore et al. · 2010 [cited by applicant]
US 20100146570A1 · Kim et al. · 2010 [cited by applicant]
US 20100212004A1 · Fu · 2010 [cited by applicant]
US 20100281475A1 · Jain et al. · 2010 [cited by applicant]
US 20110011421A1 · Dumas et al. · 2011 [cited by applicant]
US 20110035593A1 · Pyle et al. · 2011 [cited by applicant]
US 20110040793A1 · Davidson et al. · 2011 [cited by applicant]
US 20110041171A1 · Burch et al. · 2011 [cited by applicant]
US 20110053555A1 · Cai et al. · 2011 [cited by applicant]
US 20110067095A1 · Leicher et al. · 2011 [cited by applicant]
US 20110083069A1 · Paul et al. · 2011 [cited by applicant]
US 20110112939A1 · Nelson et al. · 2011 [cited by applicant]
US 20110131643A1 · Lawrence et al. · 2011 [cited by applicant]
US 20110239283A1 · Chern · 2011 [cited by applicant]
US 20110296504A1 · Burch et al. · 2011 [cited by applicant]
US 20110314532A1 · Austin et al. · 2011 [cited by applicant]
US 20110314533A1 · Austin et al. · 2011 [cited by applicant]
US 20120005733A1 · Ross · 2012 [cited by applicant]
US 20120023556A1 · Schultz et al. · 2012 [cited by applicant]
US 20120028609A1 · Hruska · 2012 [cited by applicant]
US 20120047425A1 · Ahmed · 2012 [cited by applicant]
US 20120066757A1 · Vysogorets et al. · 2012 [cited by applicant]
US 20120117626A1 · Yates et al. · 2012 [cited by applicant]
US 20120144034A1 · McCarty · 2012 [cited by applicant]
US 20120144457A1 · Counterman · 2012 [cited by applicant]
US 20120144501A1 · Vangpat et al. · 2012 [cited by applicant]
US 20120151564A1 · Robert et al. · 2012 [cited by applicant]
US 20120167185A1 · Menezes et al. · 2012 [cited by applicant]
US 20120173610A1 · Bleau et al. · 2012 [cited by applicant]
US 20120216268A1 · Kassaei et al. · 2012 [cited by applicant]
US 20120227098A1 · Obasanjo et al. · 2012 [cited by applicant]
US 20120233334A1 · Braudes et al. · 2012 [cited by applicant]
US 20120254959A1 · Schmidt et al. · 2012 [cited by applicant]
US 20120278876A1 · McDonald · 2012 [cited by applicant]
US 20120311663A1 · Seidl et al. · 2012 [cited by applicant]
US 20120331536A1 · Chabbewal et al. · 2012 [cited by applicant]
US 20130007846A1 · Murakami et al. · 2013 [cited by applicant]
US 20130014258A1 · Williams · 2013 [cited by applicant]
US 20130024371A1 · Hariramani et al. · 2013 [cited by applicant]
US 20130024919A1 · Wetter et al. · 2013 [cited by applicant]
US 20130031425A1 · Vingralek · 2013 [cited by applicant]
US 20130036455A1 · Bodi et al. · 2013 [cited by applicant]
US 20130086065A1 · Sharma et al. · 2013 [cited by applicant]
US 20130086210A1 · Mu et al. · 2013 [cited by applicant]
US 20130086211A1 · Sondhi et al. · 2013 [cited by applicant]
US 20130086628A1 · Kottahachchi et al. · 2013 [cited by applicant]
US 20130086639A1 · Sondhi et al. · 2013 [cited by applicant]
US 20130086645A1 · Srinivasan et al. · 2013 [cited by applicant]
US 20130086657A1 · Srinivasan et al. · 2013 [cited by applicant]
US 20130086658A1 · Kottahachchi et al. · 2013 [cited by applicant]
US 20130086669A1 · Sondhi et al. · 2013 [cited by applicant]
US 20130103802A1 · Kawato · 2013 [cited by applicant]
US 20130117826A1 · Gordon et al. · 2013 [cited by applicant]
US 20130125226A1 · Shah et al. · 2013 [cited by applicant]
US 20130160099A1 · Fitzpatrick, III · 2013 [cited by applicant]
US 20130160144A1 · Mok et al. · 2013 [cited by applicant]
US 20130212486A1 · Joshi et al. · 2013 [cited by applicant]
US 20130227291A1 · Ahmed et al. · 2013 [cited by applicant]
US 20130227663A1 · Cadenas Gonzalez · 2013 [cited by applicant]
US 20130283362A1 · Kress et al. · 2013 [cited by applicant]
US 20140007213A1 · Sanin et al. · 2014 [cited by applicant]
US 20140020073A1 · Ronda et al. · 2014 [cited by applicant]
US 20140025753A1 · Gronowski et al. · 2014 [cited by applicant]
US 20140033278A1 · Nimashakavi et al. · 2014 [cited by applicant]
US 20140033279A1 · Nimashakavi et al. · 2014 [cited by applicant]
US 20140033280A1 · Nimashakavi et al. · 2014 [cited by applicant]
US 20140095874A1 · Desai et al. · 2014 [cited by applicant]
US 20140136346A1 · Teso · 2014 [cited by applicant]
US 20140173753A1 · Sanso et al. · 2014 [cited by applicant]
US 20140187240A1 · Chen · 2014 [cited by applicant]
US 20140220933A1 · Lynes et al. · 2014 [cited by applicant]
US 20140281548A1 · Boyer et al. · 2014 [cited by applicant]
US 20140282833A1 · Boyer et al. · 2014 [cited by applicant]
US 20140325664A1 · Nekhoroshev · 2014 [cited by applicant]
US 20140337955A1 · Mendelovich et al. · 2014 [cited by applicant]
US 20140350979A1 · Paetzold et al. · 2014 [cited by applicant]
US 20140372367A1 · McLean et al. · 2014 [cited by applicant]
US 20140380428A1 · Kobayashi · 2014 [cited by applicant]
US 20140380429A1 · Matsugashita · 2014 [cited by applicant]
US 20150050972A1 · Sarrafzadeh et al. · 2015 [cited by applicant]
US 20150066859A1 · Blake · 2015 [cited by applicant]
US 20150089569A1 · Sondhi et al. · 2015 [cited by applicant]
US 20150089570A1 · Sondhi et al. · 2015 [cited by applicant]
US 20150089571A1 · Srinivasan et al. · 2015 [cited by applicant]
US 20150089596A1 · Sondhi et al. · 2015 [cited by applicant]
US 20150089597A1 · Srinivasan et al. · 2015 [cited by applicant]
US 20150089617A1 · Sondhi et al. · 2015 [cited by applicant]
US 20150089622A1 · Sondhi et al. · 2015 [cited by applicant]
US 20150089623A1 · Sondhi et al. · 2015 [cited by applicant]
US 20150156190A1 · Sanso et al. · 2015 [cited by applicant]
US 20150200948A1 · Cairns et al. · 2015 [cited by applicant]
US 20150220541A1 · Parameswaran et al. · 2015 [cited by applicant]
US 20150371045A1 · Boyer et al. · 2015 [cited by applicant]
US 20160028737A1 · Srinivasan et al. · 2016 [cited by applicant]
US 20160061125A1 · Foufas et al. · 2016 [cited by applicant]
US 20160080361A1 · Sondhi et al. · 2016 [cited by applicant]
US 20160087953A1 · Aamir et al. · 2016 [cited by applicant]
US 20160112458A1 · Boyer et al. · 2016 [cited by applicant]
US 20160205108A1 · Si et al. · 2016 [cited by applicant]
US 20160226859A1 · Sondhi et al. · 2016 [cited by applicant]
US 20170149837A1 · Sondhi et al. · 2017 [cited by applicant]
US 20170302655A1 · Sondhi et al. · 2017 [cited by applicant]
US 20170331829A1 · Lander · 2017 [cited by examiner]
US 20180012012A1 · Stone · 2018 [cited by examiner]
CN 102546648A · 2012 [cited by applicant]
CN 102611709A · 2012 [cited by applicant]
CN 104255007A · 2014 [cited by applicant]
CN 104903905A · 2015 [cited by applicant]
CN 104903909A · 2015 [cited by applicant]
CN 104904181A · 2015 [cited by applicant]
CN 105659558A · 2016 [cited by applicant]
CN 105659558B · 2018 [cited by applicant]
EP 2257026A1 · 2010 [cited by applicant]
EP 2632108A1 · 2013 [cited by applicant]
EP 2973140A1 · 2016 [cited by applicant]
EP 2973142A1 · 2016 [cited by applicant]
EP 2973183A1 · 2016 [cited by applicant]
EP 3047626A1 · 2016 [cited by applicant]
EP 3047626B1 · 2017 [cited by applicant]
JP 2015501021A · 2015 [cited by applicant]
JP 2016512374A · 2016 [cited by applicant]
JP 2016513945A · 2016 [cited by applicant]
JP 2016514912A · 2016 [cited by applicant]
JP 6033990B2 · 2016 [cited by applicant]
JP 2016535880A · 2016 [cited by applicant]
WO 2013049392A1 · 2013 [cited by applicant]
WO 2013049461A2 · 2013 [cited by applicant]
WO 2013049461A3 · 2014 [cited by applicant]
WO 2014144939A1 · 2014 [cited by applicant]
WO 2014144961A1 · 2014 [cited by applicant]
WO 2014145039A1 · 2014 [cited by applicant]
WO 2015042349A1 · 2015 [cited by applicant]
WO 2016048404A1 · 2016 [cited by applicant]
“An Introduction to Role-Based Access Control”, NIST/ITL Bulletin, Available Online at: http://csrc.nist.gov/groups/SNS/rbac/documents/design_implementation/Intro_role_based_access.html, Dec. 1995, 5 pages. [cited by applicant]
“Configuring Google OAuth2 for Single Sign On”, Available Online at: https://support.watchmanmonitoring.com/hc/en-us/articles/115002916983-Configuring-Google-OAuth2-for-Single-Sign-On, Apr. 5, 2018, 6 pages. [cited by applicant]
“Oracle Internet Directory Administrator's Guide: Introduction to LDAP and Oracle Internet Directory”, Oracle, 10g Release 2, Available Online at: http://docs.oracle.com/cd/B14099_19/idmanage.1012/b14082/intro.htm, 1999… [cited by applicant]
“Service-to-Service App”, Available Online at: https://docs.pivotal.io/p-identity/1-2/configure-apps/service-to-service-app.html, Feb. 19, 2018, 1 page. [cited by applicant]
“Single Sign On (SSO) Using OAuth”, Available Online at: https://www.miniorange.com/single-sign-on-(sso)-using-oauth, Feb. 15, 2018, 3 pages. [cited by applicant]
“Single Sign-On/Custom Authentication”, MSDN, Available Online at: http://msdn.microsoft.com/en-us/library/bb969522(v=office.12).aspx, Apr. 23, 2011, 3 pages. [cited by applicant]
“Using OAuth for Single Sign-On”, Available Online at: https://www.trustbuilder.com/oauth, Feb. 15, 2018, 2 pages. [cited by applicant]
“Using Single Sign-On Access in Identity Manager”, Available Online at: https://www.netiq.com/documentation/identity-manager-46/setup/data/b1av7dg3.html, Feb. 16, 2018, 2 pages. [cited by applicant]
“XACML v3.0 Hierarchical Resource Profile Version 1.0”, Oasis, Working Draft 7, Available Online at: http://xml.coverpages.org/XACML-v30-HierarchicalResource Profile-WD7.pdf, Apr. 1, 2009, 22 pages. [cited by applicant]
U.S. Appl. No. 13/215,178, Final Office Action mailed on Oct. 5, 2015, 13 pages. [cited by applicant]
U.S. Appl. No. 13/215,178, Final Office Action mailed on Jul. 8, 2014, 16 pages. [cited by applicant]
U.S. Appl. No. 13/215,178, Non-Final Office Action mailed on Apr. 23, 2015, 15 pages. [cited by applicant]
U.S. Appl. No. 13/215,178, Non-Final Office Action mailed on Oct. 4, 2013, 22 pages. [cited by applicant]
U.S. Appl. No. 13/405,357, Final Office Action mailed on Jun. 12, 2014, 17 pages. [cited by applicant]
U.S. Appl. No. 13/405,357, Non-Final Office Action, mailed on Feb. 11, 2016, 13 pages. [cited by applicant]
U.S. Appl. No. 13/405,357, Non-Final Office Action, mailed on Oct. 23, 2013, 13 pages. [cited by applicant]
U.S. Appl. No. 13/464,880, Final Office Action, mailed on Aug. 29, 2014, 19 pages. [cited by applicant]
U.S. Appl. No. 13/464,880, Non-Final Office Action, mailed on Mar. 28, 2014, 19 pages. [cited by applicant]
U.S. Appl. No. 13/464,880, Notice of Allowance, mailed on Jan. 22, 2015, 13 pages. [cited by applicant]
U.S. Appl. No. 13/485,372, Non-Final Office Action, mailed on Feb. 28, 2013, 14 pages. [cited by applicant]
U.S. Appl. No. 13/631,538, Final Office Action, mailed on May 15, 2014, 16 pages. [cited by applicant]
U.S. Appl. No. 13/631,538, Non-Final Office Action, mailed on Jan. 2, 2014, 18 pages. [cited by applicant]
U.S. Appl. No. 13/631,538, Notice of Allowance, mailed on Sep. 2, 2014, 8 pages. [cited by applicant]
U.S. Appl. No. 13/647,114, Non-Final Office Action, mailed on Apr. 19, 2013, 20 pages. [cited by applicant]
U.S. Appl. No. 13/647,114, Notice of Allowance, mailed on Sep. 5, 2013, 11 pages. [cited by applicant]
U.S. Appl. No. 13/841,498, Non-Final Office Action, mailed on Oct. 8, 2014, 18 pages. [cited by applicant]
U.S. Appl. No. 13/841,498, Notice of Allowance, mailed on May 4, 2015, 11 pages. [cited by applicant]
U.S. Appl. No. 14/039,514, Non-Final Office Action, mailed on Jan. 11, 2016, 19 pages. [cited by applicant]
U.S. Appl. No. 14/213,244, Final Office Action, mailed on May 18, 2015, 13 pages. [cited by applicant]
U.S. Appl. No. 14/213,244, Non-Final Office Action, mailed on Nov. 7, 2014, 11 pages. [cited by applicant]
U.S. Appl. No. 14/213,244, Notice of Allowance, mailed on Sep. 18, 2015, 8 pages. [cited by applicant]
U.S. Appl. No. 14/213,244, Supplemental Notice of Allowability, mailed on Oct. 14, 2015, 2 pages. [cited by applicant]
U.S. Appl. No. 14/266,454, Advisory Action, mailed on Sep. 9, 2016, 3 pages. [cited by applicant]
U.S. Appl. No. 14/266,454, Final Office Action, mailed on Mar. 17, 2016, 17 pages. [cited by applicant]
U.S. Appl. No. 14/266,454, Non-Final Office Action, mailed on Aug. 13, 2015, 14 pages. [cited by applicant]
U.S. Appl. No. 14/266,454, Notice of Allowance, mailed on Mar. 1, 2017, 19 pages. [cited by applicant]
U.S. Appl. No. 14/266,466, Non-Final Office Action, mailed on Jul. 17, 2015, 9 pages. [cited by applicant]
U.S. Appl. No. 14/266,466, Notice of Allowability, mailed on Apr. 4, 2016, 2 pages. [cited by applicant]
U.S. Appl. No. 14/266,466, Notice of Allowance, mailed on Jan. 15, 2016, 9 pages. [cited by applicant]
U.S. Appl. No. 14/266,466, Supplemental Notice of Allowability, mailed on Apr. 28, 2016, 2 pages. [cited by applicant]
U.S. Appl. No. 14/266,472, Non-Final Office Action, mailed on Apr. 23, 2015, 9 pages. [cited by applicant]
U.S. Appl. No. 14/266,472, Notice of Allowance, mailed on Jul. 8, 2015, 11 pages. [cited by applicant]
U.S. Appl. No. 14/266,472, Supplemental Notice of Allowability, mailed on Aug. 7, 2015, 2 pages. [cited by applicant]
U.S. Appl. No. 14/266,472, Supplemental Notice of Allowability, mailed on Oct. 23, 2015, 4 pages. [cited by applicant]
U.S. Appl. No. 14/266,478, Non-Final Office Action, mailed on Apr. 27, 2015, 12 pages. [cited by applicant]
U.S. Appl. No. 14/266,478, Notice of Allowance, mailed on Aug. 28, 2015, 22 pages. [cited by applicant]
U.S. Appl. No. 14/266,478, Supplemental Notice of Allowability, mailed on Oct. 29, 2015, 4 pages. [cited by applicant]
U.S. Appl. No. 14/266,486, Non-Final Office Action, mailed on Sep. 8, 2015, 16 pages. [cited by applicant]
U.S. Appl. No. 14/266,486, Notice of Allowance, mailed on Feb. 24, 2016, 17 pages. [cited by applicant]
U.S. Appl. No. 14/266,496, Final Office Action, mailed on Jun. 30, 2016, 8 pages. [cited by applicant]
U.S. Appl. No. 14/266,496, Non-Final Office Action, mailed on Dec. 18, 2015, 21 pages. [cited by applicant]
U.S. Appl. No. 14/266,496, Non-Final Office Action, mailed on Jun. 4, 2015, 31 pages. [cited by applicant]
U.S. Appl. No. 14/266,496, Notice of Allowability, mailed on Nov. 30, 2016, 2 pages. [cited by applicant]
U.S. Appl. No. 14/266,496, Notice of Allowance, mailed on Aug. 17, 2016, 17 pages. [cited by applicant]
U.S. Appl. No. 14/266,496, Notice of Allowbility, mailed on Oct. 28, 2016, 2 pages. [cited by applicant]
U.S. Appl. No. 14/266,505, Corrected Notice of Allowability, mailed on Sep. 14, 2016, 4 pages. [cited by applicant]
U.S. Appl. No. 14/266,505, Corrected Notice of Allowance, mailed on Nov. 22, 2016, 5 pages. [cited by applicant]
U.S. Appl. No. 14/266,505, Final Office Action, mailed on Mar. 3, 2016, 17 pages. [cited by applicant]
U.S. Appl. No. 14/266,505, Non-Final Office Action, mailed on Sep. 1, 2015, 12 pages. [cited by applicant]
U.S. Appl. No. 14/266,505, Notice of Allowance, mailed on Aug. 25, 2016, 9 pages. [cited by applicant]
U.S. Appl. No. 14/266,515, Final Office Action, mailed on Dec. 16, 2015, 40 pages. [cited by applicant]
U.S. Appl. No. 14/266,515, Non-Final Office Action, mailed on Jun. 26, 2015, 37 pages. [cited by applicant]
U.S. Appl. No. 14/266,515, Notice of Allowability, mailed on Sep. 21, 2016, 6 pages. [cited by applicant]
U.S. Appl. No. 14/266,515, Notice of Allowance, mailed on Aug. 26, 2016, 16 pages. [cited by applicant]
U.S. Appl. No. 14/594,377, Notice of Allowance, mailed on Jan. 15, 2016, 22 pages. [cited by applicant]
U.S. Appl. No. 14/878,412, Non-Final Office Action, mailed on Nov. 23, 2015, 12 pages. [cited by applicant]
U.S. Appl. No. 14/878,412, Notice of Allowance, mailed on Mar. 31, 2016, 9 pages. [cited by applicant]
U.S. Appl. No. 14/878,412, Supplemental Notice of Allowability, mailed on May 31, 2016, 2 pages. [cited by applicant]
U.S. Appl. No. 14/951,438, Notice of Allowance, mailed on Mar. 28, 2016, 12 pages. [cited by applicant]
U.S. Appl. No. 14/951,438, Supplemental Notice of Allowability, mailed on Apr. 13, 2016, 2 pages. [cited by applicant]
U.S. Appl. No. 14/951,438, Supplemental Notice of Allowability, mailed on Jul. 6, 2016, 2 pages. [cited by applicant]
U.S. Appl. No. 15/099,426, Non-Final Office Action, mailed on Jul. 28, 2016, 6 pages. [cited by applicant]
U.S. Appl. No. 15/099,426, Notice of Allowance, mailed on Nov. 7, 2016, 8 pages. [cited by applicant]
U.S. Appl. No. 15/099,426, Supplemental Notice of Allowability, mailed on Jan. 6, 2017, 2 pages. [cited by applicant]
U.S. Appl. No. 15/370,911, Non-Final Office Action, mailed on Dec. 15, 2017, 19 pages. [cited by applicant]
U.S. Appl. No. 15/370,911, Notice of Allowance, mailed on May 23, 2018, 12 pages. [cited by applicant]
U.S. Appl. No. 15/640,311, Notice of Allowance, mailed on Oct. 6, 2017, 15 pages. [cited by applicant]
U.S. Appl. No. 16/164,709, Corrected Notice of Allowability, mailed on Mar. 3, 2022, 5 pages. [cited by applicant]
U.S. Appl. No. 16/164,709, Final Office Action, mailed on Oct. 18, 2021, 18 pages. [cited by applicant]
U.S. Appl. No. 16/164,709, Non-Final Office Action, mailed on Feb. 19, 2021, 19 pages. [cited by applicant]
U.S. Appl. No. 16/164,709, Notice of Allowance, mailed on Feb. 9, 2022, 8 pages. [cited by applicant]
U.S. Appl. No. 17/684,949 , Non-Final Office Action, Mailed On Dec. 6, 2022, 17 pages. [cited by applicant]
U.S. Appl. No. 17/684,949, Notice of Allowance, mailed on May 19, 2023, 9 pages. [cited by applicant]
U.S. Appl. No. 18/343,345, Non-Final Office Action, mailed on Feb. 28, 2024, 18 pages. [cited by applicant]
U.S. Appl. No. 18/343,345, Notice of Allowance, mailed on Jul. 31, 2024, 8 pages. [cited by applicant]
Anthony et al., “Consolidation Best Practices: Oracle Database 12c Plugs You into the Cloud”, Oracle White Paper, Available Online at: http://www.oracle.com/us/products/database/database-private-cloud-wp-360048.pdf, Jul… [cited by applicant]
Bierman et al., “Network Configuration Protocol (NETCONF) Access Control Model”, Internet Engineering Task Force, RFC 6536, Available Online at: http://tools.ietf.org/html/rfc6536, Mar. 2012, 50 pages. [cited by applicant]
Bussard et al., “Delegation of Access Rights in Multi-Domain Service Compositions”, Available Online at: Springerlink.com, vol. 2, Issue 2, Dec. 1, 2009, pp. 137-154. [cited by applicant]
Chanliau et al., “Oracle Fusion Middleware: Oracle Platform Security Services (OPSS) FAQ”, Oracle, Available Online at: http://www.oracle.com/technetwork/testcontent/opss-faq-131489.pdf, Jul. 2010, 6 pages. [cited by applicant]
Chiba et al., “Dynamic Authorization Extension to Remote Authentication Dial In User Service (RADIUS)”, Network Working Group, RFC 5176, Available Online at: http://tools.ietf.org/html/rfc5176, Jan. 2008, 35 pages. [cited by applicant]
Clemm et al., “Web Distributed Authoring and Versioning (WebDAV) Access Control Protocol”, Network Working Group, RFC 3744, Available Online at: http://www.ietf.org/rfc/rfc3744.txt, May 2004, 66 pages. [cited by applicant]
Chinese Application No. 201480057803.9, Notice of Decision to Grant, mailed on Jun. 1, 2018, 2 pages. [cited by applicant]
Chinese Application No. 201480057803.9, Office Action, mailed on Jun. 5, 2017, 11 pages. [cited by applicant]
Chinese Application No. 201480057803.9, Office Action, mailed on Jan. 2, 2018, 6 pages. [cited by applicant]
Datta et al., “Oracle Fusion Middleware Developer's Guide for Oracle Identity Manager”, Oracle, 11g Release 2, E27150-08, Available Online at: http://docs.oracle.com/cd/E37115_01/dev.1112/e27150/toc.htm, Sep. 2013, 1102… [cited by applicant]
Demchenko et al., “Authorization Infrastructure for On-Demand Network Resource Provisioning”, 9th IEEE/ACM International Conference on Grid Computing, Oct. 31, 2008, pp. 95-103. [cited by applicant]
European Application No. 12773179.2, Extended European Search Report, mailed on Jul. 14, 2015, 5 pages. [cited by applicant]
European Application No. 13156805.7, Extended European Search Report, mailed on Jun. 6, 2013, 5 pages. [cited by applicant]
European Application No. 13156805.7, Office Action, mailed on Apr. 13, 2015, 5 pages. [cited by applicant]
European Application No. 13156805.7, Office Action, mailed on Oct. 29, 2015, 5 pages. [cited by applicant]
European Application No. 14762378.9, Extended European Search Report, mailed on Jul. 1, 2016, 7 pages. [cited by applicant]
European Application No. 14781768.8, Office Action, mailed on Sep. 30, 2016, 4 pages. [cited by applicant]
Hammer-Lahav, “TF RFC5849”, pril 30, 2010, pp. 1-38. [cited by applicant]
Hammer-Lahav, “The OAuth 1.0 Protocol-RFC5849”, Internet Engineering Task Force. Available Online at: http://tools.ietf.org/pdf/draft-hardt-oauth-01.pdf, Apr. 30, 2010, pp. 1-38. [cited by applicant]
Hammer-Lahav et al., “The OAuth 2.0 Protocol draft-ietf-oauth-v2-10”, Network Working Group Internet-Draft, Jul. 11, 2010, 44 pages. [cited by applicant]
Hardt et al., “OAuth Web Resource Authorization Profiles Draft-Hardt-OAuth-01”, Available Online at: https://tools. ietf.org/html/draft-hardt-oauth-01 >, Jan. 2010, 40 pages. [cited by applicant]
Hardt, “The OAuth 2.0 Authorization Framework”, Internet Engineering Task Force (IETF) RFC 6749, Microsoft, Available Online at: https://tools.ietf.org/html/rfc6749, Oct. 2012, pp. 1-76. [cited by applicant]
Huang, “SportMingles Sports Social Network for iOS”, The University of Texas at Austin, Dec. 2012, 29 pages. [cited by applicant]
Hunt, “Chain Grant Type for OAuth2 draft-hunt-oauth-chain-01.txt”, Internet-Draft, Oracle Corporation, Nov. 28, 2012, 10 pages. [cited by applicant]
Jaramillo et al., “Cross-Platform, Secure Message Delivery for Mobile Devices”, Proceedings of IEEE, Southeastcon, Apr. 2013, 7 pages. [cited by applicant]
Japanese Application No. 2016-515506, Notice of Decision to Grant, mailed on Oct. 18, 2016, 3 pages. [cited by applicant]
Lodderstedt et al., “OAuth 2.0 Security Considerations”, Internet-Draft, Internet Engineering 1-18 Task Force (IETF) Available on Internet at: http://tools.ietf.org/pdf/draft-lodderstedt-oauth-securityconsiderations-02.… [cited by applicant]
Mortimer et al., “OAuth 2.0 Assertion Profile draft-ietf-oauth-assertions-00”, OAuth 2.0 Assertion Profile draft-ietf-oauth-assertions-00.txt, Internet Engineering task force, IETF; Standard working draft, internet Soci… [cited by applicant]
Noureddine et al., “A Provisioning Model Towards OAuth 2.0 Performance Optimization”, Cybernetic intelligent Systems, 2011, IEEE 10th International Conference on, IEEE, Sep. 1, 2011, pp. 76-80. [cited by applicant]
International Application No. PCT/US2012/057622, International Search Report and Written Opinion, mailed on Dec. 3, 2012, 11 pages. [cited by applicant]
International Application No. PCT/US2012/057754, International Search Report and Written Opinion, mailed on May 14, 2014, 9 pages. [cited by applicant]
International Application No. PCT/US2014/029552, International Preliminary Report on Patentability, mailed on Sep. 24, 2015, 11 pages. [cited by applicant]
International Application No. PCT/US2014/029552, International Search Report and Written Opinion, mailed on Jul. 1, 2014, 15 pages. [cited by applicant]
International Application No. PCT/US2014/029586, International Preliminary Report on Patentability, mailed on Sep. 24, 2015, 8 pages. [cited by applicant]
International Application No. PCT/US2014/029586, International Search Report and Written Opinion, mailed on Jul. 31, 2014, 12 pages. [cited by applicant]
International Application No. PCT/US2014/029680, International Preliminary Report on Patentability, mailed on Sep. 24, 2015, 9 pages. [cited by applicant]
International Application No. PCT/US2014/029680, International Search Report and Written Opinion, mailed on Jul. 1, 2014, 15 pages. [cited by applicant]
International Application No. PCT/US2014/056466, International Preliminary Report on Patentability, mailed on Mar. 31, 2016, 7 pages. [cited by applicant]
International Application No. PCT/US2014/056466, International Search Report and Written Opinion, mailed on Jan. 22, 2015, 10 pages. [cited by applicant]
International Application No. PCT/US2015/011136, Written Opinion, mailed on Oct. 5, 2015, 8 pages. [cited by applicant]
Subi et al., “Oracle Fusion Middleware Application Security Guide”, Oracle, 11g Release 1, Available Online at: http://docs.oracle.com/cd/E21764_01/core.1111/e10043/underjps.htm, May 2011, 834 pages. [cited by applicant]
Teger et al., “Oracle Fusion Middleware Developer's Guide for Oracle Access Management”, Oracle, 11g Release 2, Available Online at: http://docs.oracle.com/cd/E37115_01/dev.1112/e27134/toc.htm, Jul. 2013, 372 pages. [cited by applicant]
Teger , “Oracle Fusion Middleware Developer's Guide for Oracle Entitlements Server”, Oracle, 11g Release 1, Available Online at: http://docs.oracle.com/cd/E27559_01/dev.1112/e27154/handle_auth_calls.htm, Jul. 2012, 132 … [cited by applicant]