ROLE-PERMISSION MODEL FOR SECURITY POLICY ADMINISTRATION AND ENFORCEMENT

Patent №

US 7,124,192

Granted

2006-10-17

Filed 2001

Owner

INTERNATIONAL BUSINESS MACHINES CORPORATION

AI components

1

kr

Assignment

Recorded

Dataset

AIPD

2023_r1 edition

Application

09943618

Methods, systems, and computer program products are disclosed for protecting the security of resources in distributed computing environments. The disclosed techniques improve administration and enforcement of security policies. Allowed actions on resources, also called permissions, (such as invocations of particular methods, read or write access of a particular row or perhaps a particular column in a database table, and so forth) are grouped, and each group of permissions is associated with a role name. A particular action on a particular resource may be specified in more than one group, and therefore may be associated with more than one role. Each role is administered as a security object. Users and/or user groups may be associated with one or more roles. At run-time, access to a resource is protected by determining whether the invoking user has been associated with (granted) at least one of the roles required for this type of access on this resource.

Knowledge representationH04L 63/20H04L 63/102H04L 63/105Y10S 707/99939

AI classification

Knowledge representation0.82
AI hardware0.09
Machine learning0.03
Natural language0.00
Planning0.00
Speech0.00
Evolutionary computation0.00
Vision0.00

Ownership

INTERNATIONAL BUSINESS MACHINES CORPORATION

assignment · 121420809

Assignors

HIGH, ROBERT H., JR., NADALIN, ANTHONY J., NAGARATNAM, NATARAJ

On an employer assignment, the assignors are typically the inventors.

From the same owner

© 2026 NYSGPT2525 LLC