首页> 外国专利> Method and system for controlling access to data resources and protecting computing system resources from unauthorized access

Method and system for controlling access to data resources and protecting computing system resources from unauthorized access

机译:用于控制对数据资源的访问并保护计算系统资源免受未授权访问的方法和系统

摘要

The invention controls access to data resources by performing the steps of: providing (i) a first directory which relates data objects to object groups, each object group including all data objects having a common assigned security attribute; (ii) a second directory which relates functions to function groups, each function group including functions having a common execution attribute; (iii) a third directory which relates users to user groups, each user group including users having a common user attribute; and a permission directory which lists allowed combinations of (user group, function group, object group). In response to a request from a user to perform a function with respect to an object, the permission directory is examined to determine if the access request is to be allowed or not allowed.
机译:本发明通过执行以下步骤来控制对数据资源的访问:提供(i)将数据对象与对象组相关联的第一目录,每个对象组包括具有共同分配的安全属性的所有数据对象;以及(ii)使功能与功能组相关的第二目录,每个功能组包括具有共同执行属性的功能; (iii)将用户与用户组相关联的第三目录,每个用户组包括具有共同用户属性的用户;权限目录列出了允许的(用户组,功能组,对象组)组合。响应于来自用户的针对对象执行功能的请求,检查许可目录以确定是否允许访问请求。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号