发明名称 Access control policy engine controlling access to resource based on any of multiple received types of security tokens
摘要 An access control policy engine associated with a resource determines whether to allow a request to access same. The engine receives the request with an security token, retrieves the token determines a type thereof, and maps access decision information in the token to a common format as at least one security claim setting forth adequate information to determine a right of the requestor. Thereafter, the engine retrieves a set of rules for accessing the resource, applies the rules to the security claims to determine whether to allow the request from the requestor, and if the request is to be allowed, provides the requestor access to the resource in accordance with the request and the rights of the requestor as determined based on the security claims.
申请公布号 US7774830(B2) 申请公布日期 2010.08.10
申请号 US20050080806 申请日期 2005.03.14
申请人 MICROSOFT CORPORATION 发明人 DILLAWAY BLAIR BREWSTER;MANFERDELLI JOHN L.;WOODS SHAWN MARTIN
分类号 H04L9/32 主分类号 H04L9/32
代理机构 代理人
主权项
地址