Invention Grant
- Patent Title: Constrained roles for access management
-
Application No.: US16747135Application Date: 2020-01-20
-
Publication No.: US11297066B2Publication Date: 2022-04-05
- Inventor: Yi-hsiu Wei , David Yu Chang , Ching-Yun Chao , Hui-Ming Lin
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Stosch Sabo
- Main IPC: G06F21/00
- IPC: G06F21/00 ; H04L29/06 ; H04L41/22 ; G06F21/60

Abstract:
Described are techniques for an access management protocol including a method comprising associating a granted permission set and a constrained permission set to a user profile in an access management system. Respective granted permissions in the granted permission set authorize the user profile to perform the respective granted permissions, and respective constrained permissions in the constrained permission set preclude the user profile from performing the respective constrained permissions. The method further comprises receiving a permission-based request at the access management system and from the user profile and determining that the permission-based request is associated with a permission that is included in both the granted permission set and the constrained permission set. The method further comprises rejecting the permission-based request.
Public/Granted literature
- US20210226956A1 CONSTRAINED ROLES FOR ACCESS MANAGEMENT Public/Granted day:2021-07-22
Information query