发明名称 System for controlling access privileges.
摘要 <p>The system and method of this invention provides an access control list which spans across object boundaries in an object oriented database. In addition to providing read and write access permissions, the access control list provides execute semantics which apply to the execution of methods in an object oriented database. Within the entries of the access control lists, each of the permissions for read, write, and execute can be assigned separately to each of a number of ids representing user ids or group ids. Upon request for access to the data by the user, the user id of the user and the group ids for which the user is a member are searched for within the entries to determine whether the user has the privileges to perform the operation requested against the objects. In addition, the access control policies are inherited from an object's superobject; resulting in a least privilege for the object.</p>
申请公布号 EP0398645(A2) 申请公布日期 1990.11.22
申请号 EP19900305218 申请日期 1990.05.15
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 FABBIO, ROBERT ANTHONY
分类号 G06F12/00;G06F1/00;G06F9/44;G06F17/30;G06F21/00 主分类号 G06F12/00
代理机构 代理人
主权项
地址