Invention Grant
- Patent Title: Authorization in a distributed system using access control lists and groups
-
Application No.: US14824727Application Date: 2015-08-12
-
Publication No.: US10044718B2Publication Date: 2018-08-07
- Inventor: Michael Burrows , Martin Abadi , Himabindu Pucha , Adam Sadovsky , Asim Shankar , Ankur Taly
- Applicant: Google LLC
- Applicant Address: US CA Mountain View
- Assignee: Google LLC
- Current Assignee: Google LLC
- Current Assignee Address: US CA Mountain View
- Agency: Lerner, David, Littenberg, Krumholz & Mentlik LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/60 ; G06F21/62

Abstract:
In a method of controlling sharing of an object between entities in a distributed system, a processor will identify an object and generate an access control list (ACL) for the object so that the ACL includes a list of clauses. Each clause will include a blessing pattern that will match one or more blessings, and at least one of the clauses also may include a reference to one or more groups. Each group represents a set of strings that represent blessing patterns or fragments of blessing patterns. The processor may generate each clause of the ACL as either a permit clause or a deny clause to indicate whether an entity or entities that have a blessing matched by the blessing pattern are permitted to access the object. The processor will save the ACL to a data store for use in responding to a request to access the object.
Public/Granted literature
- US20160352744A1 AUTHORIZATION IN A DISTRIBUTED SYSTEM USING ACCESS CONTROL LISTS AND GROUPS Public/Granted day:2016-12-01
Information query