首页> 外国专利> ABSTRACTING SECURITY POLICY FROM, AND TRANSFORMING TO, NATIVE REPRESENTATIONS OF ACCESS CHECK MECHANISMS.

ABSTRACTING SECURITY POLICY FROM, AND TRANSFORMING TO, NATIVE REPRESENTATIONS OF ACCESS CHECK MECHANISMS.

机译:从访问检查机制的本地代表中提取安全策略,并将其转变为该策略。

摘要

Abstracting access control policy from access check mechanisms allows for richer expression of policy, using a declarative model with semantics, than what is permitted by the access check mechanisms. Further, abstracting access control policy allows for uniform expression of policy across multiple access check mechanisms. Proof-like reasons for any access query are provided, such as who has access to what resource, built from the policy statements themselves, independent of the access check mechanism that provide access. Access is audited and policy-based reasons for access are provided based on the access control policy.
机译:与访问检查机制所允许的相比,使用具有语义的声明性模型从访问检查机制中抽象访问控制策略可以实现更丰富的策略表达。此外,抽象访问控制策略允许跨多个访问检查机制统一表达策略。提供了任何访问查询的类似证据的原因,例如谁有权访问根据策略语句本身构建的资源,而与提供访问的访问检查机制无关。审核访问,并根据访问控制策略提供基于策略的访问原因。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号