Cross-platform single sign-on service system with authorization control mechanism

TWM687397UActive Publication Date: 2026-09-11TAISHIN INT BANK CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
TW115204092
Authority / Receiving Office
TW · TW
Patent Type
Utility models
Current Assignee / Owner
Filing Date
2026-05-07
Publication Date
2026-09-11
Estimated Expiration
2036-05-06

Smart Images

  • Figure 00000000_0000_ABST
    Figure 00000000_0000_ABST
Patent Text Reader

Abstract

A cross-platform Single Sign-On (SSO) service system with an authorization control mechanism is provided for use with mobile applications. This system includes an authorization server, an online banking server, and a database server connecting the two. The database server stores the SSO consent switch field. When the authorization server or online banking server receives a SSO request, it first checks the database server to confirm the status of the SSO consent switch field. If the status is disabled, the SSO request is blocked. In this way, this system can dynamically and in real-time control the automatic login function between mobile applications and online banking without modifying the program code.
Need to check novelty before this filing date? Find Prior Art

Claims

1. A cross-platform single sign-on service system with an authorization control mechanism, used in conjunction with a mobile application, comprising: a database server storing at least one single sign-on authorization switch field; an authorization server connected to the database server, used to generate a one-time authorization token according to a request from the mobile application; and an online banking server connected to the database server and the authorization server; wherein, When the authorization server receives a scepter request from one of the mobile applications, the authorization server first accesses the database server to confirm the status of the single login authorization switch field. If the status is disabled, the authorization server refuses to generate the one-time scepter.

2. A cross-platform single sign-on service system with an authorization control mechanism as described in Request 1, wherein the single sign-on authorization switch field includes a system-level switch for controlling the on / off state of the single sign-on function across the entire system.

3. A cross-platform single login service system with an authorization control mechanism as described in Request 1, wherein the single login authorization switch field includes a user level switch, and the user level on / off relationship is bound to a user identification code.

4. A cross-platform single sign-on service system with authorization control mechanism as described in Request 1, wherein when the online banking server receives a webpage access request containing the one-time scepter, the online banking server accesses the database server to confirm the status of the single sign-on authorization switch field. If the status is prohibited, the online banking server refuses to establish an online banking session.

5. A cross-platform single sign-on service system with an authorization control mechanism as described in Request 1, wherein the single sign-on authorization switch field is in Boolean format.

6. A cross-platform single sign-on service system with an authorization control mechanism as described in Request 1, wherein the database server further stores an authorization change record to record the modification time and operator information of the single sign-on authorization switch field.