Limiting access to application features in cloud applications

US10657239B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10657239-B2
Application numberUS-201715720940-A
CountryUS
Kind codeB2
Filing dateSep 29, 2017
Priority dateMay 25, 2017
Publication dateMay 19, 2020
Grant dateMay 19, 2020

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Techniques are provided for limiting access to a feature in an application. Certain application features, such as access controlled features, are not generally accessible to all users of an integration cloud service system. When a user makes a request to access an access controlled feature, the system can determine whether user information satisfies the requirements to access a requested access controlled feature. If the user satisfies the requirements for the requested access controlled feature, an access key can be dynamically generated based on the user information.

First claim

Opening claim text (preview).

What is claimed is: 1. A method for providing access to an application feature, the method comprising: receiving, by an integration cloud service system of a cloud environment, a request to access an access controlled feature in an application in the cloud environment, wherein the access controlled feature is configured to be accessed by using an access key that is generated based on user information; dynamically generating, by the integration cloud service system, the access key for the access controlled feature in the application based on the user information, wherein the user information comprises at least one from a group consisting of a user role, a user permission, user environment information, user system version information, and feature information; validating, by the integration cloud service system, the access key for the access controlled feature in the application based on the user information; and in response to the access key being valid, executing, by the integration cloud service system the access controlled feature in the application. 2. The method according to claim 1 , wherein the user information comprises environment information, a cloud application instance information, and a unique ID of the application feature. 3. The method according to claim 2 , wherein the environment information comprises one of a production environment, a development environment, and a test environment. 4. The method according to claim 2 , wherein the cloud application instance information comprises a version number of the integration cloud service system. 5. The method according to claim 2 , wherein the access key comprises a string of characters that uniquely identifies the environment information, the cloud application instance information, and the unique ID of the application feature. 6. The method according to claim 5 , wherein the validating the access key for the feature in the application comprises: receiving, on a user interface for the access controlled feature, the access key; and determining whether the access key corresponds to at least one of the environment information, the cloud application instance information, and the unique ID of the application feature; and in response to the access key corresponding to one of the environment information, the cloud application instance information, and the unique ID, determining that the access key is valid. 7. The method according to claim 5 , wherein the validating the access key for the feature in the application comprises: receiving, on a user interface for the access controlled feature, the access key; determining whether the access key corresponds to the environment information, the cloud application instance information, and the unique ID of the application feature; and in response to the access key corresponding to the environment information, the cloud application instance information, and the unique ID, determining that the access key is valid. 8. The method according to claim 1 , wherein the feature comprises a functionality configured to be applied to the application. 9. The method according to claim 1 , wherein the application is an integrated cloud service application. 10. The method according to claim 1 , wherein an end user device of the integration cloud service system receives the request to access the access controlled feature in the application. 11. A computing device for providing access to an application feature, the computing device comprising: a memory; and one or more processors in an integration cloud service system of a cloud environment, the one or more processors configured to: receive a request to access an access controlled feature in an application in the cloud environment, wherein the access controlled feature is configured to be accessed by using an access key that is generated based on user information; dynamically generate the access key for the access controlled feature in the application based on the user information; validate the access key for the access controlled feature in the application based on the user information, wherein the user information comprises at least one from a group consisting of a user role, a user permission, user environment information, user system version information, and feature information; and in response to the access key being valid, execute the access controlled feature in the application. 12. The computing device according to claim 11 , wherein the user information comprises environment information, a cloud application instance information, and a unique ID of the application feature. 13. The computing device according to claim 12 , wherein the environment information comprises one of a production environment, a development environment, and a test environment. 14. The computing device according to claim 12 , wherein the cloud application instance information comprises a version number of the integration cloud service system. 15. The computing device according to claim 12 , wherein the validating the access key for the feature in the application comprises: receiving, on a user interface for the access controlled feature, the access key; determining whether the access key corresponds to the environment information, the cloud application instance information, and the unique ID of the application feature; and in response to the access key corresponding to the environment information, the cloud application instance information, and the unique ID, determining that the access key is valid. 16. A non-transitory computer readable storage medium storing instructions which, when executed by one or more processors of a computing device, cause the one or more processors to perform a method comprising: receiving, by an integration cloud service system of a cloud environment, a request to access an access controlled feature in an application in the cloud environment, wherein the access controlled feature is configured to be accessed by using an access key that is generated based on user information; dynamically generating, by the integration cloud service system, the access key for the access controlled feature in the application based on the user information, wherein the user information comprises at least one from a group consisting of a user role, a user permission, user environment information, user system version information, and feature information; validating, by the integration cloud service system, the access key for the access controlled feature in the application based on the user information; and in response to the access key being valid, executing, by the integration cloud service system the access controlled feature in the application. 17. The computer readable storage medium according to claim 16 , wherein the user information comprises environment information, a cloud application instance information, and a unique ID of the feature in the application. 18. The computer readable storage medium according to claim 17 , wherein the environment information comprises one of a production environment, a development environment, and a test environment. 19. The computer readable storage medium according to claim 17 , wherein the cloud application instance information comprises a version number of the integration cloud service system. 20. The computer readable storage medium according to claim 17 , wherein the validating the access key for the feature in the application comprises: receiving, on a user interface for the access controlled feature, the access key; determining whether th

Assignees

Inventors

Classifications

  • using tickets, e.g. Kerberos (cryptographic mechanisms or cryptographic arrangements for entity authentication using tickets or tokens H04L9/3213) · CPC title

  • for key distribution, e.g. centrally by trusted party (cryptographic mechanisms or cryptographic arrangements for key distribution involving a central third party H04L9/0819) · CPC title

  • using time-dependent keys, e.g. periodically changing keys (cryptographic mechanisms or cryptographic arrangements for controlling usage of secret information H04L9/088) · CPC title

  • Usage controlling of secret information, e.g. techniques for restricting cryptographic keys to pre-authorized uses, different access levels, validity of crypto-period, different key- or password length, or different strong and weak cryptographic algorithms (network architectures or network communication protocols for using time-dependent keys in a packet data network H04L63/068) · CPC title

  • using tickets or tokens, e.g. Kerberos (network architectures or network communication protocols for entities authentication using tickets in a packet data network H04L63/0807) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10657239B2 cover?
Techniques are provided for limiting access to a feature in an application. Certain application features, such as access controlled features, are not generally accessible to all users of an integration cloud service system. When a user makes a request to access an access controlled feature, the system can determine whether user information satisfies the requirements to access a requested access…
Who is the assignee on this patent?
Oracle Int Corp
What technology area does this patent fall under?
Primary CPC classification G06F21/335. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue May 19 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 12 related publications on this page (citations in our corpus or others sharing the same primary CPC).