发明名称 Abstracting security policy from, and transforming to, native representations of access check mechanisms
摘要 Abstracting access control policy from access check mechanisms allows for richer expression of policy, using a declarative model with semantics, than what is permitted by the access check mechanisms. Further, abstracting access control policy allows for uniform expression of policy across multiple access check mechanisms. Proof-like reasons for any access query are provided, such as who has access to what resource, built from the policy statements themselves, independent of the access check mechanism that provide access. Access is audited and policy-based reasons for access are provided based on the access control policy.
申请公布号 US7882539(B2) 申请公布日期 2011.02.01
申请号 US20060445778 申请日期 2006.06.02
申请人 MICROSOFT CORPORATION 发明人 PARAMASIVAM MUTHUKRISHNAN;ROSE, III CHARLES F.;MCPHERSON DAVE M.;PERUMAL RAJA PAZHANIVEL;NATH SATYAJIT;LEACH PAUL J.;PANDYA RAVINDRA NATH
分类号 G06F17/00;H04L29/06 主分类号 G06F17/00
代理机构 代理人
主权项
地址