发明申请
- 专利标题: Method And System For Restricting Access To User Resources
- 专利标题(中): 限制用户资源访问的方法和系统
-
申请号: US12166088申请日: 2008-07-01
-
公开(公告)号: US20080271159A1公开(公告)日: 2008-10-30
- 发明人: Ralph W. Brown , Robert Keller , Milo S. Medin , David Temkin
- 申请人: Ralph W. Brown , Robert Keller , Milo S. Medin , David Temkin
- 申请人地址: US CA San Mateo
- 专利权人: AT HOME CORPORATION
- 当前专利权人: AT HOME CORPORATION
- 当前专利权人地址: US CA San Mateo
- 主分类号: H04L9/00
- IPC分类号: H04L9/00 ; G06F15/16 ; G06F3/00
摘要:
A user's set top box (STB), or other client, executes a shell and has an application program interface (API) by which certain features of the client can be controlled. The client is in communication with a walled garden proxy server (WGPS), which controls access to a walled garden. The walled garden contains links to one or more servers providing network-based services. The client sends a request to the WGPS to access a service provided by a site in the garden. To provide the service, the site sends the client a message containing code calling a function in the API. The WGPS traps the message from the site and looks up the site in a table to determine the access control list (ACL) for the site. The ACL is a bit-map that specifies which functions of the client's API can be invoked by code from the site. The WGPS includes the ACL in the header of the hypertext transport protocol (HTTP) message to the client. The shell receives the message and extracts the ACL. The shell uses the ACL to determine whether the code has permission to execute any called functions in the API. If the code lacks permission, the shell stops execution and sends a message to the site indicating that the site lacks permission. Otherwise, the shell allows the code to call the function.
公开/授权文献
- US07873737B2 Method and system for restricting access to user resources 公开/授权日:2011-01-18
信息查询