Invention Grant
- Patent Title: Method and apparatus for logging privilege use in a distributed computing environment
-
Application No.: US12141694Application Date: 2008-06-18
-
Publication No.: US09652788B2Publication Date: 2017-05-16
- Inventor: Nigel King , George A. Buzsaki , Suchithra Upadhyayula
- Applicant: Nigel King , George A. Buzsaki , Suchithra Upadhyayula
- Applicant Address: US CA Redwood Shores
- Assignee: ORACLE INTERNATIONAL CORPORATION
- Current Assignee: ORACLE INTERNATIONAL CORPORATION
- Current Assignee Address: US CA Redwood Shores
- Agency: Park, Vaughan, Fleming & Dowler LLP
- Agent Shun Yao
- Main IPC: G06F7/00
- IPC: G06F7/00 ; G06Q30/06

Abstract:
One embodiment of the present invention provides a system that logs the use of privileges in a distributed computing environment. The distributed computing environment includes a database system, one or more client applications, and a unified security management layer between the database system and the one or more client applications. During operation, the system receives a request from a client application to execute a business function in the distributed computing environment. The system determines a privilege associated with the requested business function, and logs that the request is associated with the privilege. The system then checks, in the unified security management layer, whether a user associated with the request is associated with a role that has the privilege. If the user is associated with a role that has the privilege, the system performs the requested business function. By checking and logging privilege access in the unified security management layer, the system facilitates tracking privilege use for the database system and the client applications in a single entity, thereby enabling security managers to more easily audit privileged operations in the distributed computing environment.
Public/Granted literature
- US20090319527A1 METHOD AND APPARATUS FOR LOGGING PRIVILEGE USE IN A DISTRIBUTED COMPUTING ENVIRONMENT Public/Granted day:2009-12-24
Information query