首页> 外国专利> Distributed capability-based authorization architecture

Distributed capability-based authorization architecture

机译:基于分布式功能的授权架构

摘要

A system and methods for applying capability-based authorization within a distributed computing environment. Instead of associating permissions or privileges with objects (e.g., computing resources), permissions are associated with subjects (e.g., users, roles). Compared to object-based methods of access control, such as Access Control Lists (ACL), management of capability-based authorizations scales much better as the number of objects becomes very large. A central repository allows changes to the authorization framework (e.g., new subjects, modified permissions) to be made once. The changes can then be propagated across, and applied to, multiple address spaces instead of having to individually or manually update each local node or address space.
机译:一种在分布式计算环境中应用基于功能的授权的系统和方法。代替将权限或特权与对象(例如,计算资源)相关联,将权限与主题(例如,用户,角色)相关联。与基于对象的访问控制方法(如访问控制列表(ACL))相比,基于功能的授权的管理可扩展性更好,因为对象的数量非常大。中央存储库允许对授权框架(例如,新主题,修改的权限)进行一次更改。然后可以将更改传播到多个地址空间并应用到多个地址空间,而不必分别或手动更新每个本地节点或地址空间。

著录项

  • 公开/公告号US7404203B2

    专利类型

  • 公开/公告日2008-07-22

    原文格式PDF

  • 申请/专利权人 RAYMOND K. NG;

    申请/专利号US20030430967

  • 发明设计人 RAYMOND K. NG;

    申请日2003-05-06

  • 分类号G06F11/30;

  • 国家 US

  • 入库时间 2022-08-21 20:10:32

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号