SYSTEM AND METHOD FOR RESTRICTING DATABASE ACCESS TO MANAGED OBJECT INFORMATION USING A PERMISSIONS TABLE THAT SPECIFIES ACCESS RIGHTS CORRESPONDING TO USER ACCESS RIGHTS TO THE MANAGED OBJECTS
Patent №
US 6,038,563
Granted
2000-03-14
Filed 1998
Owner
SUN MICROSYSTEMS, INC.
Lab
—
AI components
1
planning
Assignment
Recorded
Dataset
AIPD
2023_r1 edition
Application
09047907
An access control database has access control objects that collectively store information that specifies access rights by users to specified sets of the managed objects. The specified access rights include access rights to obtain management information from the network. An access control server provides users access to the managed objects in accordance with the access rights specified by the access control database. An information transfer mechanism sends management information from the network to a database management system (DBMS) for storage in a set of database tables. Each database table stores management information for a corresponding class of managed objects. An access control procedure limits access to the management information stored in the database tables using at least one permissions table. A permissions table defines a subset of rows in the database tables that are accessible to at least one of the users. The set of database table rows that are accessible corresponds to the managed object access rights specified by the access control database. A user access request to access management information in the database is intercepted, and the access control procedure is invoked when the user access request is a select statement. The database access engine accesses information in the set of database tables using the permissions tables such that each user is allowed access only to management information in the set of database tables that the user would be allowed by the access control database to access.
AI classification
Ownership
SUN MICROSYSTEMS, INC.
assignment · 90760083
Assignors
BAPAT, SUBODH, FISHER, BART LEE
On an employer assignment, the assignors are typically the inventors.