-
公开(公告)号:US11954224B1
公开(公告)日:2024-04-09
申请号:US18239527
申请日:2023-08-29
Applicant: SNOWFLAKE INC.
Inventor: Yimeng Li , Carl Yates Perry , Raghavendran Ramakrishnan , Frantisek Rolinek , Yunqiao Zhang
CPC classification number: G06F21/6227 , G06F16/285 , G06F21/6254
Abstract: Embodiments of the present disclosure describe systems, methods, and computer program products for redacting sensitive data within a database. An example method can include receiving a masking policy for a column of a database, the masking policy identifying a category of sensitive data, examining a column of a database to identify a category of sensitive data in a first location of the column, and, in response to a data query accessing the column, the first location of the column exceeding a threshold probability of comprising sensitive data, executing a redaction operation to redact the category of sensitive data from the first location of the column to generate redacted data for a response to the data query.
-
公开(公告)号:US11494500B1
公开(公告)日:2022-11-08
申请号:US17655887
申请日:2022-03-22
Applicant: Snowflake Inc.
Inventor: Suraj P. Acharya , Damien Carru , Vikas Jain , Zhen Mo , Frantisek Rolinek
Abstract: A request to replicate a first account maintained by a data platform is received. Based on the request, account data associated with the account is accessed. The account data comprises security configurations for the first account. In response to the request, the first account is replicated using the account data. A second account results from replicating the first account. The replicating of the first account comprises automatically replicating the security configurations for the first account to the second account. The replicating of the security configurations comprises replicating an identity management configuration of the first account; replicating an authorization configuration of the first account; and replicating an authentication configuration of the first account.
-
公开(公告)号:US11314875B1
公开(公告)日:2022-04-26
申请号:US17643642
申请日:2021-12-10
Applicant: Snowflake Inc.
Inventor: Suraj P. Acharya , Damien Carru , Vikas Jain , Zhen Mo , Frantisek Rolinek
Abstract: A request to replicate a first account maintained by a data platform is received. Based on the request, account data associated with the account is accessed. The account data comprises security configurations for the first account. In response to the request, the first account is replicated using the account data. A second account results from replicating the first account. The replicating of the first account comprises automatically replicating the security configurations for the first account to the second account. The replicating of the security configurations comprises replicating an identity management configuration of the first account; replicating an authorization configuration of the first account; and replicating an authentication configuration of the first account.
-
公开(公告)号:US12242641B2
公开(公告)日:2025-03-04
申请号:US18588839
申请日:2024-02-27
Applicant: SNOWFLAKE INC.
Inventor: Yimeng Li , Carl Yates Perry , Raghavendran Ramakrishnan , Frantisek Rolinek , Yunqiao Zhang
Abstract: The present disclosure describes systems, methods, and computer program products for redacting sensitive data within a database. An example method can include sending, to a database, a data query accessing a column of the database, a masking policy identifying a first category of sensitive data and a second category of sensitive data, and in response to the data query, receiving redacted data, wherein the first category of sensitive data is redacted from a first location of the column by a first redaction operation and the second category of sensitive data is redacted from a second location of the column by a second redaction operation.
-
公开(公告)号:US11783078B1
公开(公告)日:2023-10-10
申请号:US18304063
申请日:2023-04-20
Applicant: SNOWFLAKE INC.
Inventor: Yimeng Li , Carl Yates Perry , Raghavendran Ramakrishnan , Frantisek Rolinek , Yunqiao Zhang
CPC classification number: G06F21/6227 , G06F16/285 , G06F21/6254
Abstract: Embodiments of the present disclosure describe systems, methods, and computer program products for redacting sensitive data within a database. An example method can include examining a first column of a plurality of columns of a database to identify a first category of sensitive data in a first location of the first column and a second category of sensitive data in a second location of the first column, receiving a masking policy for the first column, the masking policy identifying the first category of sensitive data, and, in response to a data query accessing the first column, executing a redaction operation to redact the first category of sensitive data from the first location of the first column to generate redacted data for a response to the data query.
-
公开(公告)号:US20230185931A1
公开(公告)日:2023-06-15
申请号:US18167607
申请日:2023-02-10
Applicant: Snowflake Inc.
Inventor: Suraj P. Acharya , Damien Carru , Vikas Jain , Zhen Mo , Frantisek Rolinek
CPC classification number: G06F21/604 , G06F21/602 , G06F16/27 , G06F21/6218 , G06F2221/2145
Abstract: A request to replicate a first account maintained by a data platform is received. Based on the request, account data associated with the account is accessed. The account data comprises security configurations for the first account. In response to the request, the first account is replicated using the account data. A second account results from replicating the first account. The replicating of the first account comprises automatically replicating the security configurations for the first account to the second account. The replicating of the security configurations comprises replicating an identity management configuration of the first account; replicating an authorization configuration of the first account; and replicating an authentication configuration of the first account.
-
公开(公告)号:US11620395B1
公开(公告)日:2023-04-04
申请号:US17898176
申请日:2022-08-29
Applicant: Snowflake Inc.
Inventor: Suraj P. Acharya , Damien Carru , Vikas Jain , Zhen Mo , Frantisek Rolinek
Abstract: A request to replicate a first account maintained by a data platform is received. Based on the request, account data associated with the account is accessed. The account data comprises security configurations for the first account. In response to the request, the first account is replicated using the account data. A second account results from replicating the first account. The replicating of the first account comprises automatically replicating the security configurations for the first account to the second account. The replicating of the security configurations comprises replicating an identity management configuration of the first account; replicating an authorization configuration of the first account; and replicating an authentication configuration of the first account.
-
-
-
-
-
-