-
公开(公告)号:US07747647B2
公开(公告)日:2010-06-29
申请号:US11322846
申请日:2005-12-30
摘要: A permission information system and method are provided. The system facilitates management of permissions across a wide variety of systems and applications in a network environment. The system includes a data store which is a central repository that maintains permissions (e.g., in a user readable format). The permissions can, optionally, be translated into a format that is useable by endpoint system(s).The system further includes a metadirectory component which notices change(s) that are created in the data store and sends the security information to the endpoint system(s). The new security policy can then installed and enforced on the endpoint systems. The system can thus employ the capabilities of a metadirectory to distribute security policy(ies) to these end-point systems. The system can, optionally, include one or more translator(s) which transform the user readable format into a format that is consumable by the endpoint system(s).
摘要翻译: 提供了许可信息系统和方法。 该系统便于管理网络环境中各种系统和应用程序的权限。 该系统包括数据存储器,其是维护许可(例如,以用户可读格式)的中央存储库。 可以选择地将权限转换为可由端点系统使用的格式。 系统还包括元目录组件,其识别在数据存储中创建的变化并将安全信息发送到端点系统。 然后可以在端点系统上安装和实施新的安全策略。 因此,系统可以采用元目录的功能来将安全策略分发给这些端点系统。 系统可以可选地包括一个或多个转换器,其将用户可读格式转换成端点系统可消耗的格式。
-
公开(公告)号:US20070153814A1
公开(公告)日:2007-07-05
申请号:US11322846
申请日:2005-12-30
IPC分类号: H04L12/56
摘要: A permission information system and method are provided. The system facilitates management of permissions across a wide variety of systems and applications in a network environment. The system includes a data store which is a central repository that maintains permissions (e.g., in a user readable format). The permissions can, optionally, be translated into a format that is useable by endpoint system(s).The system further includes a metadirectory component which notices change(s) that are created in the data store and sends the security information to the endpoint system(s). The new security policy can then installed and enforced on the endpoint systems. The system can thus employ the capabilities of a metadirectory to distribute security policy(ies) to these end-point systems. The system can, optionally, include one or more translator(s) which transform the user readable format into a format that is consumable by the endpoint system(s).
摘要翻译: 提供了许可信息系统和方法。 该系统便于管理网络环境中各种系统和应用程序的权限。 该系统包括数据存储器,其是维护许可(例如,以用户可读格式)的中央存储库。 可以选择地将权限转换为可由端点系统使用的格式。 系统还包括元目录组件,其识别在数据存储中创建的变化并将安全信息发送到端点系统。 然后可以在端点系统上安装和实施新的安全策略。 因此,系统可以采用元目录的功能来将安全策略分发给这些端点系统。 系统可以可选地包括一个或多个转换器,其将用户可读格式转换成端点系统可消耗的格式。
-
公开(公告)号:US20050027713A1
公开(公告)日:2005-02-03
申请号:US10632521
申请日:2003-08-01
申请人: Kim Cameron , Ahmad Abdel-Wahed , Matthias Leibmann , Kevin Miller , James Booth , Derek Murman , Max Benson , Felix Wong , Cezar Ungureanasu
发明人: Kim Cameron , Ahmad Abdel-Wahed , Matthias Leibmann , Kevin Miller , James Booth , Derek Murman , Max Benson , Felix Wong , Cezar Ungureanasu
CPC分类号: H04L63/083 , G06F21/41
摘要: Subject matter includes a password management system in which a web application obtains a list of accounts associated with a given user from an identity integration system connected to diverse data sources and in which a password can be updated in each data source, even when the identity integration system does not natively communicate with a data source.
摘要翻译: 主题包括密码管理系统,其中Web应用程序从连接到不同数据源的身份集成系统获取与给定用户相关联的帐户列表,并且其中可以在每个数据源中更新密码,即使身份集成 系统本身不与数据源进行通信。
-
公开(公告)号:US20090007095A1
公开(公告)日:2009-01-01
申请号:US11768256
申请日:2007-06-26
IPC分类号: G06F9/445
CPC分类号: G06F8/61
摘要: Systems and methods that facilitate deployment of server applications via employing a deployment system that declaratively defines deployment actions. Such system is extensible to enable user customization, and includes a deployment document that declaratively defines deployment terms. The deployment document can further describe what the tasks accomplish, and also what tasks are to be forwarded to the task handler at execution time.
摘要翻译: 通过采用声明性地定义部署操作的部署系统来促进部署服务器应用程序的系统和方法。 这种系统是可扩展的,以允许用户定制,并且包括声明性地定义部署术语的部署文档。 部署文档可以进一步描述任务的完成情况,以及在执行时将什么任务转发到任务处理程序。
-
公开(公告)号:US07962493B2
公开(公告)日:2011-06-14
申请号:US11682093
申请日:2007-03-05
IPC分类号: G06F17/30
CPC分类号: G06F17/30412 , G06F21/6227
摘要: Enterprise Identity Management systems control access to information derived from identity-related data stored in various data repositories. An identity-based management system can automatically and dynamically compute derived data when the source data changes. Rule-base tools can be used to compute derived data from arbitrary attribute-based datasets. Dynamic computation of identity-based attributes within information system servers allows data to be aggregated and normalized from multiple data sources deployed across an organization so that updated related information can be persisted and pushed to various servers in the organization.
摘要翻译: 企业身份管理系统控制对存储在各种数据存储库中的身份相关数据导出的信息的访问。 基于身份的管理系统可以在源数据更改时自动和动态地计算派生数据。 规则库工具可用于从任意基于属性的数据集中计算派生数据。 信息系统服务器中基于身份的属性的动态计算允许从组织中部署的多个数据源聚合和归一化数据,以便更新的相关信息可以持久化并推送到组织中的各种服务器。
-
公开(公告)号:US08544083B2
公开(公告)日:2013-09-24
申请号:US12388679
申请日:2009-02-19
IPC分类号: G06F21/00
CPC分类号: H04L63/105 , G06F21/6218 , G06F2221/2105
摘要: Security elevation techniques are described. In an implementation, a request is received for additional security access beyond that which is currently specified for a program. An identity that describes the program is checked with a plurality of conditions. The security level is automatically elevated to grant the additional security access when the identity corresponds to one of the conditions that indicates that the security level is to be automatically elevated.
摘要翻译: 描述安全标高技术。 在实现中,接收到超出当前为程序指定的安全访问的附加安全访问的请求。 在多个条件下检查描述程序的身份。 当身份对应于指示安全级别要自动提升的条件之一时,安全级别自动升级以授予额外的安全访问权限。
-
公开(公告)号:US08302092B2
公开(公告)日:2012-10-30
申请号:US11768256
申请日:2007-06-26
IPC分类号: G06F9/445
CPC分类号: G06F8/61
摘要: Systems and methods that facilitate deployment of server applications via employing a deployment system that declaratively defines deployment actions. Such system is extensible to enable user customization, and includes a deployment document that declaratively defines deployment terms. The deployment document can further describe what the tasks accomplish, and also what tasks are to be forwarded to the task handler at execution time.
摘要翻译: 通过采用声明性地定义部署操作的部署系统来促进部署服务器应用程序的系统和方法。 这种系统是可扩展的,以允许用户定制,并且包括声明性地定义部署术语的部署文档。 部署文档可以进一步描述任务的完成情况,以及在执行时将什么任务转发到任务处理程序。
-
公开(公告)号:US20100212008A1
公开(公告)日:2010-08-19
申请号:US12388679
申请日:2009-02-19
IPC分类号: H04L9/32
CPC分类号: H04L63/105 , G06F21/6218 , G06F2221/2105
摘要: Security elevation techniques are described. In an implementation, a request is received for additional security access beyond that which is currently specified for a program. An identity that describes the program is checked with a plurality of conditions. The security level is automatically elevated to grant the additional security access when the identity corresponds to one of the conditions that indicates that the security level is to be automatically elevated.
摘要翻译: 描述安全标高技术。 在实现中,接收到超出当前为程序指定的安全访问的附加安全访问的请求。 在多个条件下检查描述程序的身份。 当身份对应于指示安全级别要自动提升的条件之一时,安全级别自动升级以授予额外的安全访问权限。
-
公开(公告)号:US20080222096A1
公开(公告)日:2008-09-11
申请号:US11682093
申请日:2007-03-05
IPC分类号: G06F17/30
CPC分类号: G06F17/30412 , G06F21/6227
摘要: Enterprise Identity Management systems control access to information derived from identity-related data stored in various data repositories. An identity-based management system can automatically and dynamically compute derived data when the source data changes. Rule-base tools can be used to compute derived data from arbitrary attribute-based datasets. Dynamic computation of identity-based attributes within information system servers allows data to be aggregated and normalized from multiple data sources deployed across an organization so that updated related information can be persisted and pushed to various servers in the organization.
摘要翻译: 企业身份管理系统控制对存储在各种数据存储库中的身份相关数据导出的信息的访问。 基于身份的管理系统可以在源数据更改时自动和动态地计算派生数据。 规则库工具可用于从任意基于属性的数据集中计算派生数据。 信息系统服务器中基于身份的属性的动态计算允许从组织中部署的多个数据源聚合和归一化数据,以便更新的相关信息可以持久化并推送到组织中的各种服务器。
-
-
-
-
-
-
-
-