会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 4. 发明授权
    • Integrated access authorization
    • 集成访问授权
    • US07853993B2
    • 2010-12-14
    • US12348649
    • 2009-01-05
    • Mark Vayman
    • Mark Vayman
    • G06F7/04G06F15/16G06F17/30G06L29/06
    • G06F21/57G06F21/6218G06F2221/2101
    • A facility for performing an access control check as an integral component of an operating system and utilizing a centralized policy store is provided. The facility executes as an integral part of an operating system executing on a computer and receives an authorization query to determine whether a principal has authorization to access a resource. The facility applies a policy maintained in a centralized policy store that is applicable to the principal to determine whether authorization exists to access the resource. If authorization does not exist, the facility denies the authorization query and records an indication of the denial of the authorization in an audit log. The facility may trigger events based on the auditing of authorization queries. The facility may also record an indication of authorization to access the resource in the audit log. The facility may additionally determine whether the authorization query is a request for authorization to perform an inherently dangerous operation, and record an indication of an authorization to perform the inherently dangerous operation in the audit log.
    • 提供了一种用于执行访问控制检查作为操作系统的组成部分并利用集中式策略存储的设施。 该设施作为在计算机上执行的操作系统的组成部分执行,并且接收授权查询以确定主体是否具有访问资源的授权。 该设施应用在集中策略存储中维护的策略,其适用于主体以确定是否存在访问资源的授权。 如果授权不存在,则该设施将拒绝授权查询,并在审核日志中记录拒绝授权的指示。 该设施可能会根据审核授权查询来触发事件。 该设施还可以记录在审核日志中访问资源的授权指示。 该设施可以另外确定授权查询是否是执行本质上危险的操作的授权请求,并且记录在审核日志中执行固有危险操作的授权指示。