会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 72. 发明授权
    • Distributed access management of information resources
    • 信息资源的分布式访问管理
    • US06182142B2
    • 2001-01-30
    • US09113609
    • 1998-07-10
    • Teresa WinEmilio Belmonte
    • Teresa WinEmilio Belmonte
    • G06F1300
    • H04L63/067G06F19/00G06F21/604G06F21/6218H04L63/105H04L67/306
    • Using a method for controlling access to information resources, a single secure sign-on gives the user access to authorized resources, based on the user's role in the organization. The information resources are stored on a protected server. A user of a client or browser logs in to the system. A runtime module on the protected server receives the login request and intercepts all other request by the client to use a resource. The runtime module connects to an access server that can determine whether a particular user is authentic and which resources the user is authorized to access. User information is associated with roles and functional groups of an organization to which the user belongs; the roles are associated with access privileges. The access server connects to a registry server that stores information about users, roles, functional groups, resources, and associations among them. The access server and registry server exchange encrypted information that authorized the user to use the resource. The access server passes encrypted tokens that define the user's roles and authorization rights to the browser or client, which stores the tokens in memory. The user is presented with a customized display showing only those resources that the user may access. Thereafter, the access server can resolve requests to use other resources based on the tokens without contacting the registry server.
    • 使用一种方法来控制对信息资源的访问,单个安全登录使用户可以根据用户在组织中的角色访问授权资源。 信息资源存储在受保护的服务器上。 客户端或浏览器的用户登录到系统。 受保护服务器上的运行时模块接收登录请求,并拦截客户端使用资源的所有其他请求。 运行时模块连接到可以确定特定用户是否可信的访问服务器,以及用户被授权访问哪些资源。 用户信息与用户所属的组织的角色和功能组相关联; 角色与访问权限相关联。 访问服务器连接到注册表服务器,用于存储有关用户,角色,功能组,资源和关联的信息。 访问服务器和注册表服务器交换授权用户使用资源的加密信息。 访问服务器将加密的令牌传递给用户的角色和授权权限,该浏览器或客户端将令牌存储在内存中。 向用户呈现仅显示用户可访问的资源的定制显示。 此后,访问服务器可以解析基于令牌使用其他资源的请求,而不需要联系注册服务器。