Invention Grant
US07882544B2 Inherited role-based access control system, method and program product
失效
继承了基于角色的访问控制系统,方法和程序产品
- Patent Title: Inherited role-based access control system, method and program product
- Patent Title (中): 继承了基于角色的访问控制系统,方法和程序产品
-
Application No.: US10889625Application Date: 2004-07-12
-
Publication No.: US07882544B2Publication Date: 2011-02-01
- Inventor: Dieter Buehler , Eric L. Masselle
- Applicant: Dieter Buehler , Eric L. Masselle
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Jeffrey T. Hofman
- Main IPC: G06F17/30
- IPC: G06F17/30 ; G06F15/167 ; G06F7/00 ; H04L29/06

Abstract:
Under the present invention, role types are defined by association with certain permissible actions. Once defined in this manner, a role type can then be bound to “nodes” of a hierarchical tree that represent computer-based resources such as dynamic object spaces. Once bound to a node, instances of this role type are created that will be inherited by hierarchical descendants of that node unless a role type block (e.g., inheritance or propagation) has been established for the corresponding role type. The present invention also allows the computer-based resources to be defined as virtual or private. Virtual resources represent general protected concepts in the system instead of computer-based resources and are subject to be bound with roles, while private resources are not. That is, the private resources remain the “property” of the creating user or group.
Public/Granted literature
- US20060010483A1 Inherited role-based access control system, method and program product Public/Granted day:2006-01-12
Information query