Token exchange service for customer workloads

By exchanging tokens between different cloud environments and using encryption keys for decryption and verification, the problem of seamless access between cloud environments is solved, enabling secure and efficient service usage.

CN121970293APending Publication Date: 2026-05-01ORACLE INT CORP
View PDF 0 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
ORACLE INT CORP
Filing Date
2024-09-05
Publication Date
2026-05-01

AI Technical Summary

Technical Problem

Customers in different cloud environments cannot seamlessly access services provided by other cloud environments, and existing API key management suffers from security risks and high resource consumption.

Method used

Exchange tokens between two cloud environments using a token exchange service, and decrypt and verify the tokens using encryption keys for seamless access.

Benefits of technology

It provides a secure and efficient way for users in one cloud environment to seamlessly use services in another cloud environment, avoiding the security risks and resource consumption of API key management.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN121970293A_ABST
    Figure CN121970293A_ABST
Patent Text Reader

Abstract

A token exchange framework between two different cloud service providers is described herein. A multi-cloud infrastructure included in a first cloud environment provided by a first cloud service provider (CSP) receives a first request from a user associated with an account in a second cloud environment provided by a second CSP. The first request corresponds to use of a service provided by the first cloud environment and includes a first token issued by the second CSP. Based on verifying the first token with respect to a trust configuration corresponding to the second CSP, the multi-cloud infrastructure obtains a second token issued by the first CSP. The trust configuration is pre-generated and maintained by the first CSP in the first cloud environment. The multi-cloud infrastructure sends the second token to the service to enable the user to utilize the service provided by the first cloud environment.
Need to check novelty before this filing date? Find Prior Art