发明名称 POLICY GENERATION AND CONVERSION SYSTEM, POLICY DISTRIBUTION SYSTEM, AND METHOD AND PROGRAM THEREFOR
摘要 <p>To eliminate restrictions on the order of writing in an access control list. A permission rule and a prohibition rule are stored in advance. A rule is read out from an access control list accepted, and a determination is made as to whether the readout rule is contained in the permission and prohibition rules stored in advance. When the readout rule is not contained and when the readout rule is a permission rule, the readout rule is stored in the temporary storage unit. When the readout rule is not contained and when the readout rule is a prohibition rule, a determination is made as to whether the prohibition rule conflicts with the permission rule stored in the temporary storage unit. When the prohibition rule does not conflict, the prohibition rule is stored in the temporary storage unit. When the prohibition rule conflicts, the prohibition rule is converted to a prohibition rule by removing access target resources written in the permission rule from access target resources written in the prohibition rule on the basis of resource information, and the prohibition rule is stored.</p>
申请公布号 EP2410457(A1) 申请公布日期 2012.01.25
申请号 EP20100753548 申请日期 2010.03.17
申请人 NEC CORPORATION 发明人 ISHIKAWA, TAKAYUKI
分类号 G06F21/60 主分类号 G06F21/60
代理机构 代理人
主权项
地址