-
公开(公告)号:US09325739B1
公开(公告)日:2016-04-26
申请号:US13873055
申请日:2013-04-29
Applicant: Amazon Technologies, Inc.
Inventor: Gregory Branchek Roth , Daniel Stephen Popick , Jonathan Weiss
CPC classification number: G06F21/6218 , G06F3/0482 , G06F3/04842 , G06F21/10 , G06F21/604 , G06F21/629 , H04L41/0893 , H04L63/0263 , H04L63/20
Abstract: A user interface is described, such as a graphical user interface (GUI), operable to receive a representation of a security policy expressed in a first policy language, where that security policy will be supported by policy evaluation engines (or other such components) that are configured to operate using security policies expressed using a second (different) policy language. The representation of the security policy is persisted in a data store in accordance with the first policy language. Subsequently, in response to receiving a request to access a resource, a second representation of the security policy is generated by translating the content of the security policy into a second policy language that is associated with the policy evaluation engine. The second representation of the security policy is then evaluated by the policy evaluation engine to grant or deny access to the resource.
Abstract translation: 描述了用户界面,诸如图形用户界面(GUI),其可操作以接收以第一策略语言表达的安全策略的表示,其中该策略评估引擎(或其他这样的组件)将支持安全策略, 被配置为使用使用第二(不同)策略语言表达的安全策略来操作。 安全策略的表示依照第一策略语言在数据存储中保留。 随后,响应于接收到访问资源的请求,通过将安全策略的内容翻译成与策略评估引擎相关联的第二策略语言来生成安全策略的第二表示。 然后策略评估引擎对安全策略的第二个表示进行评估,以授予或拒绝对资源的访问。
-
公开(公告)号:US11907731B1
公开(公告)日:2024-02-20
申请号:US17364084
申请日:2021-06-30
Applicant: Amazon Technologies, Inc.
Inventor: Andreas Resios , Ida Mia Olsen , Martin Oliver Rehfeld , Fabian Jakobs , Timir Karia , Jonathan Weiss
CPC classification number: G06F9/44505 , G06F8/65 , H04L67/10
Abstract: Systems and methods provide for deployment of an integrated development environment configured to include one or more tools associated with specific code portions being executed within the integrated development environment. A user may provide a request to access one or more projects and definition files associated with the one or more projects may be evaluated to determine one or more tools used for execution of the source code of the one or more projects. The one or more tools may be automatically incorporated into whichever integrated development environment the user selects to ensure proper execution of the code without manual updates or installation by the user.
-
公开(公告)号:US09934399B2
公开(公告)日:2018-04-03
申请号:US15138028
申请日:2016-04-25
Applicant: Amazon Technologies, Inc.
Inventor: Gregory Branchek Roth , Daniel Stephen Popick , Jonathan Weiss
IPC: G06F17/00 , H04L29/06 , G06F21/62 , H04L12/24 , G06F21/60 , G06F3/0482 , G06F3/0484 , G06F21/10
CPC classification number: G06F21/6218 , G06F3/0482 , G06F3/04842 , G06F21/10 , G06F21/604 , G06F21/629 , H04L41/0893 , H04L63/0263 , H04L63/20
Abstract: A user interface is described, such as a graphical user interface (GUI), operable to receive a representation of a security policy expressed in a first policy language, where that security policy will be supported by policy evaluation engines (or other such components) that are configured to operate using security policies expressed using a second (different) policy language. The representation of the security policy is persisted in a data store in accordance with the first policy language. Subsequently, in response to receiving a request to access a resource, a second representation of the security policy is generated by translating the content of the security policy into a second policy language that is associated with the policy evaluation engine. The second representation of the security policy is then evaluated by the policy evaluation engine to grant or deny access to the resource.
-
公开(公告)号:US20160239677A1
公开(公告)日:2016-08-18
申请号:US15138028
申请日:2016-04-25
Applicant: Amazon Technologies, Inc.
Inventor: Gregory Branchek Roth , Daniel Stephen Popick , Jonathan Weiss
IPC: G06F21/62 , G06F3/0484 , G06F3/0482
CPC classification number: G06F21/6218 , G06F3/0482 , G06F3/04842 , G06F21/10 , G06F21/604 , G06F21/629 , H04L41/0893 , H04L63/0263 , H04L63/20
Abstract: A user interface is described, such as a graphical user interface (GUI), operable to receive a representation of a security policy expressed in a first policy language, where that security policy will be supported by policy evaluation engines (or other such components) that are configured to operate using security policies expressed using a second (different) policy language. The representation of the security policy is persisted in a data store in accordance with the first policy language. Subsequently, in response to receiving a request to access a resource, a second representation of the security policy is generated by translating the content of the security policy into a second policy language that is associated with the policy evaluation engine. The second representation of the security policy is then evaluated by the policy evaluation engine to grant or deny access to the resource.
Abstract translation: 描述了用户界面,诸如图形用户界面(GUI),其可操作以接收以第一策略语言表达的安全策略的表示,其中该策略评估引擎(或其他这样的组件)将支持安全策略, 被配置为使用使用第二(不同)策略语言表达的安全策略来操作。 安全策略的表示依照第一策略语言在数据存储中保留。 随后,响应于接收到访问资源的请求,通过将安全策略的内容翻译成与策略评估引擎相关联的第二策略语言来生成安全策略的第二表示。 然后策略评估引擎对安全策略的第二个表示进行评估,以授予或拒绝对资源的访问。
-
-
-