发明名称 Condition based authorization model for data access
摘要 A condition-based authorization model for data access is provided. According to the model, the owner of a securable software object, such as a file, folder, or process, may specify a security policy that includes an access condition for accessing the object. The access condition may be based on dynamic user or system state information having a value that is updatable while a user is logged on, such as system time or user location. When a later request is received from a user to perform an action on the object via an application programming interface of a computer operating system, a security subsystem of the computer operating system queries a system resource containing information suitable to evaluate the access condition, and determines whether the access condition is met. If the access condition is met, access by the user to the securable software object is permitted. Otherwise, access is denied.
申请公布号 US2008127354(A1) 申请公布日期 2008.05.29
申请号 US20060605030 申请日期 2006.11.28
申请人 MICROSOFT CORPORATION 发明人 CARPENTER MATTHEW CHASE;TAN XIAOXI
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址