发明名称 METHOD AND SYSTEM FOR SIMPLIFYING ROLE BASED AUTHORIZATION PROFILE IMPLEMENTATION
摘要 A two-level authorization of role and/or account based requested service operation may be performed in a system managed via Distributed DMTF, based on the CIM data model. The first level of authorization may be based on service-level availability of requested service operation based on determination of all available service operations in the managed system. Within the RBA profile, the CIM_RoleBasedAuthorizationService class and/or the CIM_RoleBasedManagementCapabilities class may enable performing service-level authorization. Similarly, within the SIM profile, the CIM_AccountManagementService class and/or the CIM_AccountManagementCapabilities class may enable performing service-level authorization. The second level authorization may be based on instance-level availability of requested service operation based on determination of available service operations via specific role and/or account instances wherein the CIM_EnabledLogicalElementCapabilities class may enable authorizing available service operations via instances of CIM_Role and/or CIM_Account classes. Instances of CIM_Role and/or CIM_Account classes may also advertise instance-specific service operations via associated instances of CIM_EnabledLogicalElementCapabilities class.
申请公布号 US2008178267(A1) 申请公布日期 2008.07.24
申请号 US20080014201 申请日期 2008.01.15
申请人 RAJAGOPAL MURALI;SHAH HEMAL 发明人 RAJAGOPAL MURALI;SHAH HEMAL
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址