Extensible Authentication Configuration Engine for Web Identity

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Developers face significant time and effort in implementing and testing authentication code for websites to use external services like Facebook, Twitter, and LinkedIn as authentication sources, due to the complexity of handling various authentication protocols.

Innovation Solution

An extensible configuration system that integrates an authentication configuration engine and social connect engine into a web experience management system, allowing websites to authenticate users based on protocols like OAuth 1.0/2.0, simplifying the process by minimizing the need for developers to handle authentication protocol intricacies and enabling seamless integration with digital identity platforms.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If developers implement authentication code manually for external services, then authentication functionality is achieved, but development time and effort increase significantly

Engineering Contradiction:
Improveauthentication functionalityVSAvoiddevelopment time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent pre-configures authentication handlers for multiple external services (Facebook, Twitter, LinkedIn, Google) with their respective authentication protocols (OAuth 1.0, OAuth 2.0, etc.) before deployment. This preliminary setup eliminates the need for developers to manually implement authentication code during deployment, resolving the contradiction between achieving reliable authentication functionality and reducing development time.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an authentication configuration engine as an intermediary layer between the website and external authentication services. This engine manages authentication handlers, protocols, and service configurations, abstracting away the complexity of direct authentication implementation. The intermediary handles protocol intricacies automatically, enabling reliable authentication while minimizing developer effort and time investment.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If developers handle authentication protocol intricacies manually, then authentication is implemented, but implementation complexity increases

Engineering Contradiction:
Improveauthentication implementationVSAvoidimplementation complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The authentication configuration engine serves as an intermediary that manages all authentication protocol intricacies. It maintains configurations for multiple protocols (OAuth 1.0, OAuth 2.0, API Key) and handles the complexity of protocol-specific requirements automatically. This intermediary layer shields developers from protocol complexity while ensuring reliable authentication implementation through proven, pre-configured handlers.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent creates a universal authentication system that handles multiple external services (Facebook, Twitter, LinkedIn, Google) and multiple protocols (OAuth 1.0, OAuth 2.0, API Key) through a single unified configuration engine. This multi-functional approach consolidates what would otherwise require separate implementation code for each service and protocol, reducing overall implementation complexity while maintaining reliable authentication across all services.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If websites integrate multiple authentication services, then user authentication options increase, but integration effort increases

Engineering Contradiction:
Improveauthentication optionsVSAvoidintegration effort
Core Design Contradiction:
Adaptability or versatilityVSEase of manufacture

Solution Approach 1:

The authentication configuration engine provides a universal interface for integrating multiple authentication services (Facebook, Twitter, LinkedIn, Google) with different protocols. Instead of requiring separate integration code for each service, the engine manages all services through unified configuration, allowing websites to offer diverse authentication options while minimizing integration effort through standardized handling.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent segments the authentication system into independent, pre-configured handlers for each external service and protocol combination. Each handler (Facebook OAuth 2.0, Twitter OAuth 1.0, LinkedIn API Key) is a self-contained module that can be independently configured and activated. This segmentation allows websites to selectively integrate only the authentication services they need, increasing versatility while reducing integration effort through modular, plug-and-play configuration.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentUS9930030B2Extensible configuration system to allow a website to authenticate users based on an authorization protocol
Publication Date: 2018.03.27 ADOBE INC
  • US9930030B2 patent drawing
  • US9930030B2 patent drawing
  • US9930030B2 patent drawing

AI summary

An extensible configuration system to allow a website to authenticate users based on an authorization protocol is disclosed. In some embodiments, the extensible configuration system includes receiving an identifier for an authentication provider; and automatically configuring a website to use the authentication provider for logging into the website.