发明名称 System and method for restricting database access to managed object information using a permissions table
摘要 <p>An access control database has access control objects that collectively store information that specifies access rights by users to specified sets of the managed objects. The specified access rights include access rights to obtain management information from the network. An access control server provides users access to the managed objects in accordance with the access rights specified by the access control database. An information transfer mechanism sends management information from the network to a database management system (DBMS) for storage in a set of database tables. Each database table stores management information for a corresponding class of managed objects. An access control procedure limits access to the management information stored in the database tables using at least one permissions table. A permissions table defines a subset of rows in the database tables that are accessible to at least one of the users. The set of database table rows that are accessible corresponds to the managed object access rights specified by the access control database. A user access request to access management information in the database is intercepted, and the access control procedure is invoked when the user access request is a select statement. The database access engine accesses information in the set of database tables using the permissions tables such that each user is allowed access only to management information in the set of database tables that the user would be allowed by the access control database to access. <IMAGE></p>
申请公布号 EP0952698(A2) 申请公布日期 1999.10.27
申请号 EP19990302320 申请日期 1999.03.25
申请人 SUN MICROSYSTEMS, INC. 发明人 BAPAT, SUBODH;FISCHER, BART LEE
分类号 G06F15/177;G06F1/00;G06F12/00;G06F13/00;G06F21/62;H04L12/24;H04L29/06;(IPC1-7):H04L12/24 主分类号 G06F15/177
代理机构 代理人
主权项
地址