Distributing permission information via a metadirectory
    1.
    发明授权
    Distributing permission information via a metadirectory 有权
    通过元目录分配权限信息

    公开(公告)号:US07747647B2

    公开(公告)日:2010-06-29

    申请号:US11322846

    申请日:2005-12-30

    IPC分类号: G06F7/00 G06F17/30

    CPC分类号: H04L63/10 H04L63/20

    摘要: A permission information system and method are provided. The system facilitates management of permissions across a wide variety of systems and applications in a network environment. The system includes a data store which is a central repository that maintains permissions (e.g., in a user readable format). The permissions can, optionally, be translated into a format that is useable by endpoint system(s).The system further includes a metadirectory component which notices change(s) that are created in the data store and sends the security information to the endpoint system(s). The new security policy can then installed and enforced on the endpoint systems. The system can thus employ the capabilities of a metadirectory to distribute security policy(ies) to these end-point systems. The system can, optionally, include one or more translator(s) which transform the user readable format into a format that is consumable by the endpoint system(s).

    摘要翻译: 提供了许可信息系统和方法。 该系统便于管理网络环境中各种系统和应用程序的权限。 该系统包括数据存储器,其是维护许可(例如,以用户可读格式)的中央存储库。 可以选择地将权限转换为可由端点系统使用的格式。 系统还包括元目录组件,其识别在数据存储中创建的变化并将安全信息发送到端点系统。 然后可以在端点系统上安装和实施新的安全策略。 因此,系统可以采用元目录的功能来将安全策略分发给这些端点系统。 系统可以可选地包括一个或多个转换器,其将用户可读格式转换成端点系统可消耗的格式。

    Distributing permission information via a metadirectory
    2.
    发明申请
    Distributing permission information via a metadirectory 有权
    通过元目录分配权限信息

    公开(公告)号:US20070153814A1

    公开(公告)日:2007-07-05

    申请号:US11322846

    申请日:2005-12-30

    IPC分类号: H04L12/56

    CPC分类号: H04L63/10 H04L63/20

    摘要: A permission information system and method are provided. The system facilitates management of permissions across a wide variety of systems and applications in a network environment. The system includes a data store which is a central repository that maintains permissions (e.g., in a user readable format). The permissions can, optionally, be translated into a format that is useable by endpoint system(s).The system further includes a metadirectory component which notices change(s) that are created in the data store and sends the security information to the endpoint system(s). The new security policy can then installed and enforced on the endpoint systems. The system can thus employ the capabilities of a metadirectory to distribute security policy(ies) to these end-point systems. The system can, optionally, include one or more translator(s) which transform the user readable format into a format that is consumable by the endpoint system(s).

    摘要翻译: 提供了许可信息系统和方法。 该系统便于管理网络环境中各种系统和应用程序的权限。 该系统包括数据存储器,其是维护许可(例如,以用户可读格式)的中央存储库。 可以选择地将权限转换为可由端点系统使用的格式。 系统还包括元目录组件,其识别在数据存储中创建的变化并将安全信息发送到端点系统。 然后可以在端点系统上安装和实施新的安全策略。 因此,系统可以采用元目录的功能来将安全策略分发给这些端点系统。 系统可以可选地包括一个或多个转换器,其将用户可读格式转换成端点系统可消耗的格式。

    EXTENSIBLE DATA DRIVEN DEPLOYMENT SYSTEM
    4.
    发明申请
    EXTENSIBLE DATA DRIVEN DEPLOYMENT SYSTEM 有权
    可扩展的数据驱动部署系统

    公开(公告)号:US20090007095A1

    公开(公告)日:2009-01-01

    申请号:US11768256

    申请日:2007-06-26

    IPC分类号: G06F9/445

    CPC分类号: G06F8/61

    摘要: Systems and methods that facilitate deployment of server applications via employing a deployment system that declaratively defines deployment actions. Such system is extensible to enable user customization, and includes a deployment document that declaratively defines deployment terms. The deployment document can further describe what the tasks accomplish, and also what tasks are to be forwarded to the task handler at execution time.

    摘要翻译: 通过采用声明性地定义部署操作的部署系统来促进部署服务器应用程序的系统和方法。 这种系统是可扩展的,以允许用户定制,并且包括声明性地定义部署术语的部署文档。 部署文档可以进一步描述任务的完成情况,以及在执行时将什么任务转发到任务处理程序。

    Dynamic computation of identity-based attributes
    5.
    发明授权
    Dynamic computation of identity-based attributes 失效
    基于身份的属性的动态计算

    公开(公告)号:US07962493B2

    公开(公告)日:2011-06-14

    申请号:US11682093

    申请日:2007-03-05

    IPC分类号: G06F17/30

    CPC分类号: G06F17/30412 G06F21/6227

    摘要: Enterprise Identity Management systems control access to information derived from identity-related data stored in various data repositories. An identity-based management system can automatically and dynamically compute derived data when the source data changes. Rule-base tools can be used to compute derived data from arbitrary attribute-based datasets. Dynamic computation of identity-based attributes within information system servers allows data to be aggregated and normalized from multiple data sources deployed across an organization so that updated related information can be persisted and pushed to various servers in the organization.

    摘要翻译: 企业身份管理系统控制对存储在各种数据存储库中的身份相关数据导出的信息的访问。 基于身份的管理系统可以在源数据更改时自动和动态地计算派生数据。 规则库工具可用于从任意基于属性的数据集中计算派生数据。 信息系统服务器中基于身份的属性的动态计算允许从组织中部署的多个数据源聚合和归一化数据,以便更新的相关信息可以持久化并推送到组织中的各种服务器。

    Identification security elevation
    6.
    发明授权
    Identification security elevation 有权
    识别安全标高

    公开(公告)号:US08544083B2

    公开(公告)日:2013-09-24

    申请号:US12388679

    申请日:2009-02-19

    IPC分类号: G06F21/00

    摘要: Security elevation techniques are described. In an implementation, a request is received for additional security access beyond that which is currently specified for a program. An identity that describes the program is checked with a plurality of conditions. The security level is automatically elevated to grant the additional security access when the identity corresponds to one of the conditions that indicates that the security level is to be automatically elevated.

    摘要翻译: 描述安全标高技术。 在实现中,接收到超出当前为程序指定的安全访问的附加安全访问的请求。 在多个条件下检查描述程序的身份。 当身份对应于指示安全级别要自动提升的条件之一时,安全级别自动升级以授予额外的安全访问权限。

    Extensible data driven deployment system
    7.
    发明授权
    Extensible data driven deployment system 有权
    可扩展数据驱动的部署系统

    公开(公告)号:US08302092B2

    公开(公告)日:2012-10-30

    申请号:US11768256

    申请日:2007-06-26

    IPC分类号: G06F9/445

    CPC分类号: G06F8/61

    摘要: Systems and methods that facilitate deployment of server applications via employing a deployment system that declaratively defines deployment actions. Such system is extensible to enable user customization, and includes a deployment document that declaratively defines deployment terms. The deployment document can further describe what the tasks accomplish, and also what tasks are to be forwarded to the task handler at execution time.

    摘要翻译: 通过采用声明性地定义部署操作的部署系统来促进部署服务器应用程序的系统和方法。 这种系统是可扩展的,以允许用户定制,并且包括声明性地定义部署术语的部署文档。 部署文档可以进一步描述任务的完成情况,以及在执行时将什么任务转发到任务处理程序。

    Identification Security Elevation
    8.
    发明申请
    Identification Security Elevation 有权
    识别安全高程

    公开(公告)号:US20100212008A1

    公开(公告)日:2010-08-19

    申请号:US12388679

    申请日:2009-02-19

    IPC分类号: H04L9/32

    摘要: Security elevation techniques are described. In an implementation, a request is received for additional security access beyond that which is currently specified for a program. An identity that describes the program is checked with a plurality of conditions. The security level is automatically elevated to grant the additional security access when the identity corresponds to one of the conditions that indicates that the security level is to be automatically elevated.

    摘要翻译: 描述安全标高技术。 在实现中,接收到超出当前为程序指定的安全访问的附加安全访问的请求。 在多个条件下检查描述程序的身份。 当身份对应于指示安全级别要自动提升的条件之一时,安全级别自动升级以授予额外的安全访问权限。

    DYNAMIC COMPUTATION OF IDENTITY-BASED ATTRIBUTES
    9.
    发明申请
    DYNAMIC COMPUTATION OF IDENTITY-BASED ATTRIBUTES 失效
    基于身份的属性的动态计算

    公开(公告)号:US20080222096A1

    公开(公告)日:2008-09-11

    申请号:US11682093

    申请日:2007-03-05

    IPC分类号: G06F17/30

    CPC分类号: G06F17/30412 G06F21/6227

    摘要: Enterprise Identity Management systems control access to information derived from identity-related data stored in various data repositories. An identity-based management system can automatically and dynamically compute derived data when the source data changes. Rule-base tools can be used to compute derived data from arbitrary attribute-based datasets. Dynamic computation of identity-based attributes within information system servers allows data to be aggregated and normalized from multiple data sources deployed across an organization so that updated related information can be persisted and pushed to various servers in the organization.

    摘要翻译: 企业身份管理系统控制对存储在各种数据存储库中的身份相关数据导出的信息的访问。 基于身份的管理系统可以在源数据更改时自动和动态地计算派生数据。 规则库工具可用于从任意基于属性的数据集中计算派生数据。 信息系统服务器中基于身份的属性的动态计算允许从组织中部署的多个数据源聚合和归一化数据,以便更新的相关信息可以持久化并推送到组织中的各种服务器。