Method and apparatus to apply an attribute based dynamic policy for mashup resources
    1.
    发明授权
    Method and apparatus to apply an attribute based dynamic policy for mashup resources 有权
    应用基于属性的动态策略的混搭资源的方法和装置

    公开(公告)号:US08397056B1

    公开(公告)日:2013-03-12

    申请号:US12763582

    申请日:2010-04-20

    IPC分类号: H04L29/06

    CPC分类号: H04L63/10 H04L67/02

    摘要: A computer system includes a mashup section that provides a mashup that performs an action on a resource. An attribute identification section identifies an attribute of a user running the mashup. An access control section provides access control. The mashup is associated to a permission artifact. The permission artifact specifies a principal and whether to permit the principal to take the action on the resource. The access control is triggered only when the mashup attempts to perform the action on the resource, and checks whether the attribute of the user running the mashup is predefined as belonging to the principal specified in the permission artifact associated to the mashup, and then permits the action on the resource only when the attribute belongs to the principal. Plural users with the same attribute belong to the principal when the same attribute is defined as belonging to the principal.

    摘要翻译: 计算机系统包括提供对资源执行动作的混搭的混搭部分。 属性识别部分识别运行混搭的用户的属性。 访问控制部分提供访问控制。 混搭与许可工件相关联。 权限工件指定一个主体,以及是否允许主体对资源采取操作。 访问控制仅在混搭尝试对资源执行操作时进行触发,并检查运行mashup的用户的属性是否预定义为属于与mashup关联的权限工件中指定的主体,然后允许 只有当属性属于主体时,才对资源执行操作。 具有相同属性的多个用户属于主体,当同一属性被定义为属于主体时。