发明名称 Privileged account manager, managed account perspectives
摘要 Techniques for managing accounts are provided. An access management system may check out credentials for accessing target systems. For example a user may receive a password for a period of time or until checked back in. Access to the target system may be logged during this time. Upon the password being checked in, a security account may modify the password so that the user may not log back in without checking out a new password. Additionally, in some examples, password policies for the security account may be managed. As such, when a password policy changes, the security account password may be dynamically updated. Additionally, in some examples, hierarchical viewing perspectives may be determined and/or selected for visualizing one or more managed accounts. Further, accounts may be organized into groups based on roles, and grants for the accounts may be dynamically updated as changes occur or new accounts are managed.
申请公布号 US9129105(B2) 申请公布日期 2015.09.08
申请号 US201213485372 申请日期 2012.05.31
申请人 ORACLE INTERNATIONAL CORPORATION 发明人 Donley Clayton;Wilcox Mark Edward;Ho Fannie;Chou Ming-Yau;Phillips Duncan V.;Moscovitz Tal
分类号 G06F7/00;G06F17/30;G06F21/45;G06F21/31;H04L29/06;G06F21/55;G06F21/46;G06F21/60 主分类号 G06F7/00
代理机构 Kilpatrick Townsend & Stockton LLP 代理人 Kilpatrick Townsend & Stockton LLP
主权项 1. An account management system, comprising: a memory storing a plurality of instructions; and one or more processors configured to access the memory, wherein the one or more processors are further configured to execute the plurality of instructions to: receive, from an administrator account, identification of a plurality of accounts of a target system, at least one of the plurality of the accounts of the target system managed by the account management system, the at least one of the plurality of accounts providing user access to the target system;receive, from the administrator account, a user-defined tag for the at least one of the plurality of accounts of the target system, the user-defined tag defining an attribute of the at least one of the plurality of accounts, wherein the defined attribute allows a viewing perspective to be defined, the viewing perspective including a user-configurable hierarchical view of one or more of the plurality of accounts;receive, from a user account, a perspective selection defining the viewing perspective including the user-configurable hierarchical view of the one or more of the plurality of accounts, wherein the viewing perspective defined by the perspective selection is based at least in part on the user-defined tag; andprepare, for display to the user account, the at least one of the plurality of accounts of the target system in the user-configurable hierarchical view based at least in part on the perspective selection.
地址 Redwood Shores CA US