发明名称 Community access control in a multi-community node
摘要 A method and mechanism of enforcing community access control in a computer network, wherein access to objects by users and processes is controlled. A Multi-Community Node (MCN) processes information for users in multiple communities and must enforce a community separation policy. The enforcement method and mechanism use a database of associations of sets of communities corresponding to users, processes, and system objects. Upon receiving a request for access to an object by a user, the MCN permits access if a user community set (UCS) of the user is a superset of an object community set (OCS) of the object; otherwise, access is denied. Upon receiving a request for access to an object by a process, the MCN permits access if an application process community set (ACS) of the process is a superset the OCS of the object; otherwise, access is denied.
申请公布号 AU3108902(A) 申请公布日期 2002.07.01
申请号 AU20020031089 申请日期 2001.12.18
申请人 SUN MICROSYSTEMS, INC. 发明人 THOMAS E. TAHAN
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址