Policy-Based Access Control Approach to Staff Activities of a Business Process
    2.
    发明申请
    Policy-Based Access Control Approach to Staff Activities of a Business Process 有权
    业务流程员工活动的基于策略的访问控制方法

    公开(公告)号:US20080263060A1

    公开(公告)日:2008-10-23

    申请号:US11738794

    申请日:2007-04-23

    IPC分类号: G06F17/30

    摘要: A computer implemented method, data processing system, and computer program product for dynamically binding business process activities to human entities at deployment time. Identification information about a staff activity in a business process is received from a process server at an access control system external to the process server. Responsive to initiation of the business process, the staff activity is resolved at the access control system at runtime by assigning the staff activity to a user based on an access policy of the access control system to form a staff activity assignment. The staff activity assignment is communicated from the access control system to the process server. The process allows the development of the business process to be entirely decoupled from staff activity resolution at runtime.

    摘要翻译: 一种计算机实现的方法,数据处理系统和计算机程序产品,用于在部署时将业务流程活动动态绑定到人类实体。 从进程服务器外部的访问控制系统的进程服务器接收关于业务进程中的工作人员活动的标识信息。 响应于业务流程的启动,通过基于访问控制系统的访问策略将员工活动分配给用户以形成员工活动分配,在运行时通过访问控制系统来解决员工活动。 员工活动分配从访问控制系统传递到进程服务器。 该过程允许业务流程的开发在运行时完全脱离员工活动解决方案。

    Policy-based access control approach to staff activities of a business process
    3.
    发明授权
    Policy-based access control approach to staff activities of a business process 有权
    基于策略的访问控制方法,用于业务流程的员工活动

    公开(公告)号:US08904391B2

    公开(公告)日:2014-12-02

    申请号:US11738794

    申请日:2007-04-23

    摘要: A computer implemented method, data processing system, and computer program product for dynamically binding business process activities to human entities at deployment time. Identification information about a staff activity in a business process is received from a process server at an access control system external to the process server. Responsive to initiation of the business process, the staff activity is resolved at the access control system at runtime by assigning the staff activity to a user based on an access policy of the access control system to form a staff activity assignment. The staff activity assignment is communicated from the access control system to the process server. The process allows the development of the business process to be entirely decoupled from staff activity resolution at runtime.

    摘要翻译: 一种计算机实现的方法,数据处理系统和计算机程序产品,用于在部署时将业务流程活动动态绑定到人类实体。 从进程服务器外部的访问控制系统的进程服务器接收关于业务进程中的工作人员活动的标识信息。 响应于业务流程的启动,通过基于访问控制系统的访问策略将员工活动分配给用户以形成员工活动分配,在运行时通过访问控制系统来解决员工活动。 员工活动分配从访问控制系统传递到进程服务器。 该过程允许业务流程的开发在运行时完全脱离员工活动解决方案。

    CLOUD SERVICE SELECTOR
    4.
    发明申请
    CLOUD SERVICE SELECTOR 审中-公开
    云服务选择器

    公开(公告)号:US20130346543A1

    公开(公告)日:2013-12-26

    申请号:US13530267

    申请日:2012-06-22

    IPC分类号: G06F15/16

    CPC分类号: G06F9/5055 G06F2209/502

    摘要: In a method for selecting a remote application service from a plurality of remote application services containing a requested electronic resource, a computer receives a request for an electronic resource. The computer sends a request for a geographic location of each node in the plurality of nodes containing the electronic resource. The computer determines a distance between the geographic location of each node in the plurality of nodes and the geographic location of the origin of the request for the electronic resource, respectively. The computer selects a remote application service based at least partially on the distance between the geographic location of each node and the geographic location of the origin of the request for the electronic resource.

    摘要翻译: 在从包含所请求的电子资源的多个远程应用服务中选择远程应用服务的方法中,计算机接收对电子资源的请求。 计算机在包含电子资源的多个节点中发送对每个节点的地理位置的请求。 计算机分别确定多个节点中的每个节点的地理位置与电子资源的请求的原点的地理位置之间的距离。 计算机至少部分地基于每个节点的地理位置与电子资源的请求的原点的地理位置之间的距离来选择远程应用服务。

    Method, system, and storage medium for creating a proof of possession confirmation for inclusion into an attribute certificate
    5.
    发明授权
    Method, system, and storage medium for creating a proof of possession confirmation for inclusion into an attribute certificate 失效
    方法,系统和存储介质,用于创建包含在属性证书中的拥有确认证明

    公开(公告)号:US07543147B2

    公开(公告)日:2009-06-02

    申请号:US10975955

    申请日:2004-10-28

    IPC分类号: H04L9/00

    摘要: A method for creating a proof of possession confirmation for inclusion by an attribute certificate authority into an attribute certificate, the attribute certificate for use by an end user. The method includes receiving from the attribute certificate authority in response to a request by the end user, a plurality of data fields corresponding to a target system, the identity of the end user, and a proof of identity possession by the end user. The method further includes preparing a data structure corresponding to an authorization attribute of the attribute certificate, the data structure including a target system name, the identity of the end user, and the key identifier of the end user. Using a private key associated with the target system, the method includes signing the data structure resulting in a proof of possession confirmation, and sending the proof of possession confirmation to the attribute certificate authority for inclusion into the attribute certificate.

    摘要翻译: 一种用于创建属性确认的证明的方法,用于将属性证书颁发机构包含在属性证书中,该属性证书由终端用户使用。 该方法包括响应于最终用户的请求,从属性认证机构接收与目标系统相对应的多个数据字段,终端用户的身份以及最终用户的身份证明。 该方法还包括准备与属性证书的授权属性对应的数据结构,数据结构包括目标系统名称,最终用户的身份以及最终用户的密钥标识符。 使用与目标系统相关联的私钥,该方法包括签署数据结构,从而得到拥有确认证明,并将属性认证机构的证明证明发送给属性证书。