Invention Grant
- Patent Title: User abstracted RBAC in a multi tenant environment
-
Application No.: US16285791Application Date: 2019-02-26
-
Publication No.: US10749873B2Publication Date: 2020-08-18
- Inventor: James D. Cleaver , Michael J. McGuire
- Applicant: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Schmeiser, Olsen & Watts, LLP
- Agent Mark Vallone
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A method and system for improving efficiency and security of a role based access control (RBAC) identity management system. A service provider owner requests an addition of a service provider identity dataset to a role dataset in the RBAC identity management system. The role dataset includes permissions to the individual users within the service provider identity dataset to access a secured resource of the RBAC identity management system and to perform the service on the secured resource. Addition of the service provider identity dataset to the role dataset is granted and is periodically revalidated which includes receiving an instruction to maintain or delete the service provider identity dataset from the role dataset. Access to the secured resource is based on the service provider identity dataset in the role dataset, instead of being based on the individual users, which improves the efficiency and security of the RBAC identity management system.
Public/Granted literature
- US20190190922A1 USER ABSTRACTED RBAC IN A MULTI TENANT ENVIRONMENT Public/Granted day:2019-06-20
Information query