Invention Grant
- Patent Title: Access control in data processing systems
- Patent Title (中): 数据处理系统中的访问控制
-
Application No.: US13077881Application Date: 2011-03-31
-
Publication No.: US08566906B2Publication Date: 2013-10-22
- Inventor: Thomas R. Gross , Guenter Karjoth
- Applicant: Thomas R. Gross , Guenter Karjoth
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Feb R. Cabrasawan
- Priority: EP10158633 20100331
- Main IPC: G06F9/00
- IPC: G06F9/00

Abstract:
A policy data structure defines predetermined authorizations, each relating to authorization of at least one user to access at least one resource as well as to dynamic access requests. Each dynamic access request indicates a condition to be satisfied by a respective set of attributes associated with a user request to access a resource and for the request to be granted in absence of an authorization determinative of the request. If the structure does not define an authorization for a request to access a resource, it is determined whether the structure defines a dynamic access requirement determinative for the request, and if so, whether to grant the request in accordance with the respective set of attributes associated with the request. For at least one request, after determining whether to grant the request, a dynamic authorization relating to authorization to access the resource within the request is added to the structure.
Public/Granted literature
- US20110247046A1 Access control in data processing systems Public/Granted day:2011-10-06
Information query