发明名称 Disabling tool execution via roles
摘要 A method and apparatus for managing tool execution via roles on a computer system while maintaining computer system security, wherein the computer system comprises a plurality of roles, are disclosed. Such a method and apparatus may include delegating tools to a user based on a role, wherein a tool provides root access for performing a specific task in the computer system and the role is an authorized role that enables the user to run the delegated tools, identifying one of the plurality of roles to be disabled, wherein the identified role is the authorized role, accessing the identified role, and, disabling the identified role so that the user cannot run the delegated tool(s). Disabled roles may likewise be enabled according to a disclosed method and apparatus. Embodiments of the invention may comprise authorization objects that comprise attributes identifying the roles and machine for which a user is authorized.
申请公布号 US2002174333(A1) 申请公布日期 2002.11.21
申请号 US20010855937 申请日期 2001.05.15
申请人 HARRAH RICHARD D.;SANCHEZ HUMBERTO A.;FINZ JEFFREY R.;ROBB MARY THOMAS;LISTER TERENCE E.;CURTIS PAULA B.;DREES DOUGLAS P. 发明人 HARRAH RICHARD D.;SANCHEZ HUMBERTO A.;FINZ JEFFREY R.;ROBB MARY THOMAS;LISTER TERENCE E.;CURTIS PAULA B.;DREES DOUGLAS P.
分类号 G06F21/00;(IPC1-7):H04L9/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址