发明名称 EXTENSIBLE ROLE-BASED ACCESS CONTROL MODEL FOR SERVICES
摘要 Architecture removes the limitation of a fixed set of roles and scopes, allows more effective permission auditing, and provides a convenient delegation model. Administrators can create roles fine-tuned to business needs without changing permissions on the resources. The new roles can be easily examined and delegated to other administrators. Moreover, scoping and delegation is simplified. This is possible because permissions are granted as a role (a unit of permission assignment is a role), which can include multiple entries. The entries correspond to end-user actions and are not related to implementation-dependent resource rights. The actions can include web services or API calls, script or executable file names, specialized commands that implement particular operation, and associated parameters, etc., essentially any action that the end-user performs.
申请公布号 US2010306008(A1) 申请公布日期 2010.12.02
申请号 US20090475612 申请日期 2009.06.01
申请人 MICROSOFT CORPORATION 发明人 GREBENIK VLADIMIR V.;ABRAHAM PRETISH
分类号 G06Q10/00 主分类号 G06Q10/00
代理机构 代理人
主权项
地址