LABELING OF DATA OBJECTS TO APPLY AND ENFORCE POLICIES
    1.
    发明申请
    LABELING OF DATA OBJECTS TO APPLY AND ENFORCE POLICIES 有权
    标示数据对象适用和执行政策

    公开(公告)号:US20080184329A1

    公开(公告)日:2008-07-31

    申请号:US11627059

    申请日:2007-01-25

    IPC分类号: G06F15/18 G06F17/00

    CPC分类号: G06F21/6218

    摘要: One or more labels are associated with a data object. One or more policies are associated with each of the labels. Based on the labels associated with the data objects, the associated policies are dispatched to policy decision engines to take one or more actions to enforce the policy. The labels, and the policies associated with the labels, are chosen by a business administrator within an enterprise, and are implemented by an Information Technology (IT) administrator. The association between labels and polices allows the policy to be applied to an object to be decoupled from the characterization of the nature of the object, or its purpose and/or role within an enterprise, business purpose and/or context of the object. Examples of policies are: access, backup, retention, isolation, audit, etc.

    摘要翻译: 一个或多个标签与数据对象相关联。 一个或多个策略与每个标签相关联。 基于与数据对象相关联的标签,相关联的策略被分派到策略决策引擎,以采取一个或多个动作来执行策略。 标签和与标签相关联的策略由企业内的业务管理员选择,并由信息技术(IT)管理员实现。 标签和策略之间的关联允许将策略应用于要从对象的性质的表征或其在企业内的目的和/或作用,商业目的和/或对象的上下文中去脱离的对象。 策略的例子有:访问,备份,保留,隔离,审核等。

    Access control based on user and service
    2.
    发明授权
    Access control based on user and service 有权
    基于用户和服务的访问控制

    公开(公告)号:US09088580B2

    公开(公告)日:2015-07-21

    申请号:US12651199

    申请日:2009-12-31

    摘要: For a particular request to access a resource, both a user associated with the request and a service through which the request is made are identified. Whether requested access to a resource is permitted is determined based on a user associated with the requested access and a service through which the access is requested. This determination can be made based on an access control entry of an access control list corresponding to the resource, the access control entry identifying access to the resource that is permitted to the user when accessing the resource through the service.

    摘要翻译: 对于访问资源的特定请求,识别与请求相关联的用户和进行请求的服务。 基于与请求的访问相关联的用户和请求访问的服务来确定是否允许对资源的请求访问。 该确定可以基于与资源相对应的访问控制列表的访问控制条目进行,访问控制条目标识对通过服务访问资源时对用户允许的资源的访问。

    ACCESS CONTROL BASED ON USER AND SERVICE
    5.
    发明申请
    ACCESS CONTROL BASED ON USER AND SERVICE 有权
    基于用户和服务的访问控制

    公开(公告)号:US20110162057A1

    公开(公告)日:2011-06-30

    申请号:US12651199

    申请日:2009-12-31

    IPC分类号: H04L9/32 G06F15/16

    摘要: For a particular request to access a resource, both a user associated with the request and a service through which the request is made are identified. Whether requested access to a resource is permitted is determined based on a user associated with the requested access and a service through which the access is requested. This determination can be made based on an access control entry of an access control list corresponding to the resource, the access control entry identifying access to the resource that is permitted to the user when accessing the resource through the service.

    摘要翻译: 对于访问资源的特定请求,识别与请求相关联的用户和进行请求的服务。 基于与请求的访问相关联的用户和请求访问的服务来确定是否允许对资源的请求访问。 该确定可以基于与资源相对应的访问控制列表的访问控制条目进行,该访问控制条目标识对通过服务访问资源时对用户允许的资源的访问。