首页> 外国专利> METHOD AND SYSTEM FOR A ROLE-BASED ACCESS CONTROL MODEL WITH ACTIVE ROLES

METHOD AND SYSTEM FOR A ROLE-BASED ACCESS CONTROL MODEL WITH ACTIVE ROLES

机译:具有主动角色的基于角色的访问控制模型的方法和系统

摘要

A method, system, apparatus, and computer program product are presented for managing access to resources with a role-based access control model that includes dynamic update functionality using role filters and capability filters. Rather than directly connecting individual users to a role, a role filter is defined for a role. The role filter is evaluated to determine which users should be matched to a given role, and matching users are then automatically associated with the given role. In addition to its role filter, each named role contains a set of capabilities. Each capability contains a set of access conditions and a capability filter. Each access condition has a set of rights. Rather than directly connecting individual resources to a capability, the administrator can define a capability filter for each capability. As target instances are added, deleted, or changed, capability filters are re-evaluated to maintain the appropriate set of relationships.
机译:提出了一种用于通过基于角色的访问控制模型来管理对资源的访问的方法,系统,装置和计算机程序产品,其中基于角色的访问控制模型包括使用角色过滤器和能力过滤器的动态更新功能。不是将单个用户直接连接到角色,而是为角色定义了角色过滤器。评估角色过滤器以确定哪些用户应与给定角色匹配,然后匹配的用户将自动与给定角色相关联。除了其角色过滤器外,每个命名角色还包含一组功能。每个功能都包含一组访问条件和一个功能过滤器。每个访问条件都有一组权限。管理员可以为每个功能定义功能过滤器,而不是直接将单个资源连接到功能。添加,删除或更改目标实例后,将重新评估功能过滤器以维护适当的关系集。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号