发明名称 Event-based database access execution
摘要 An authorisation privilege for an access request is inferred when no explicit privilege exists. The inference can be performed by way of mining occurrence patterns or derived from user hierarchy, profile, click history, transaction history or role. For any access request, the respective explicit privilege or inferred privilege is verified by the database or security administrator before the access request is permitted. Conditions expressed in an access policy are evaluated on the occurrence of predefined events. The events extend beyond user access requests, and include external events, composite events and access of a referential type. The access policy is framed in 'event, condition, access enforcement' terminology. The access control rules can be parameterised and can be instantiated by data obtained from inference rules associated with the conditions of the policy. The conditions have an evaluation component and an inference component. The access privileges supported are: read, write and indirect read. An indirect read operation typically allows a user qualified access to one or more portions of a database, but not the entire database.
申请公布号 US2004117371(A1) 申请公布日期 2004.06.17
申请号 US20020319980 申请日期 2002.12.16
申请人 BHIDE MANISH ANAND;MOHANIA MUKESH KUMAR 发明人 BHIDE MANISH ANAND;MOHANIA MUKESH KUMAR
分类号 G06F7/00;G06F21/00;(IPC1-7):G06F7/00 主分类号 G06F7/00
代理机构 代理人
主权项
地址