Outer Rim Archives
Archives · 2023 · 20230379334

Application (pre-grant publication)

Dynamic Authorization Rule Stacking and Routing Across Multiple Systems

Number
20230379334
Published
2023-11-23
Filed
2023-08-04
Assignee
Disney Enterprises, Inc.
Inventors
Gambhir; Pankaj et al.
CPC
G06F16/9024; G06Q20/127; G06Q30/0207; G06Q30/0283; G06Q30/0611; H04L63/102; H04L63/20; H04L65/60; H04L67/306
Verdict
Set aside authorization routing, security/business
Source
Google Patents · FreePatentsOnline

Abstract

A system includes a hardware processor that executes a software code to receive an authorization request on behalf of a user for a stacked resource including resources offered separately by multiple resource providers, determine resource provider computers associated with the stacked resource, and send a look-up request including an electronic identity of the user to those computers, where the electronic identity is used as a look-up key for determining user attribute(s) of the user. The software code further receives the user attribute(s) from the resource provider computers, generates an accumulated access profile of the user based on the user attribute(s), applies the profile to a rules engine to determine a stacked access result, and routes the authorization request and the stacked access result to one of the resource provider computers, where that computer completes an authorization process for access to the stacked resource based on the stacked access result.

Background

BACKGROUND

Large sized enterprises may have multiple avenues, internal and external, to authorize access to a variety of resources to users over a network. One example is in the case of online purchasing of separate online services that can be purchased both individually or together as a “bundle.” In doing so, users might end up with products and services that are essentially related and that “stack” upon one another. An example of a “stack” may include subscription services in which a bundle subscription overlaps an existing individual subscription that has already been authorized to the user. In that scenario, it's important to have an engine that appropriately accommodates stacked authorization rules (e.g., discounting rules) in a dynamic manner and that may route the user to the point-of-sale system that results in the most efficient authorization process.

Claims

21: A system comprising: a computing platform including a hardware processor and a system memory; a software code stored in the system memory; the hardware processor configured to execute the software code to: receive, over a network, a first request for access by a user to a plurality of resources, wherein each of the plurality of resources is offered by a different one of a plurality of resource providers, the first request comprising information relating to the user; determine the plurality of resource providers associated with the plurality of resources; obtain, using the information relating to the user, the entitlements of the user to the plurality of resources, wherein the information relating to the user is associated with entitlements of the user to the plurality of resources; use the entitlements of the user to the plurality of resources to determine a stacked access result; and route the first request and the stacked access result to one of the plurality of resource providers for authorizing access by the user to the plurality of resources based on the stacked access result. || 31: A method comprising: receiving, over a network, a first request for access by a user to a plurality of resources, wherein each of the plurality of resources is offered by a different one of a plurality of resource providers, the first request comprising information relating to the user; determining the plurality of resource providers associated with the plurality of resources; obtaining, using the information relating to the user, the entitlements of the user to the plurality of resources, wherein the information relating to the user is associated with entitlements of the user to the plurality of resources; using the entitlements of the user to the plurality of resources to determine a stacked access result; and routing the first request and the stacked access result to one of the plurality of resource providers for authorizing access by the user to the plurality of resources based on the stacked access result.