发明名称 Multilayer access control security system
摘要 A computer-based system provides secure, configurable access to computer network resources. A human-readable language is provided for defining access policy rules. Rules in this language are converted in an automated fashion into filters applied within the various subsystems and components in a multi-layer security system. Network users are authenticated by an access control security system that obtains basic information about that user. Based on the user ID, a set of abstract policies can be retrieved. The retrieved policies are associated with the user and the groups associated with that user. Based on the retrieved rules, a set of rules for multiple layers of the network are generated and applied to those subsystems. Two or more of the subsystems may be placed in series with different types of processing occurring in each of the subsystems, reducing the workload of subsequent subsystems.
申请公布号 US2004243835(A1) 申请公布日期 2004.12.02
申请号 US20040857224 申请日期 2004.05.28
申请人 TERZIS ANDREAS;MURGIA MARCO A.;BASKARAN ASHWIN 发明人 TERZIS ANDREAS;MURGIA MARCO A.;BASKARAN ASHWIN
分类号 G06F;G06F12/00;G06F13/00;H04L9/00;H04L29/06;(IPC1-7):H04L9/00 主分类号 G06F
代理机构 代理人
主权项
地址