发明授权
US06182142B2 Distributed access management of information resources 失效
信息资源的分布式访问管理

  • 专利标题: Distributed access management of information resources
  • 专利标题(中): 信息资源的分布式访问管理
  • 申请号: US09113609
    申请日: 1998-07-10
  • 公开(公告)号: US06182142B2
    公开(公告)日: 2001-01-30
  • 发明人: Teresa WinEmilio Belmonte
  • 申请人: Teresa WinEmilio Belmonte
  • 主分类号: G06F1300
  • IPC分类号: G06F1300
Distributed access management of information resources
摘要:
Using a method for controlling access to information resources, a single secure sign-on gives the user access to authorized resources, based on the user's role in the organization. The information resources are stored on a protected server. A user of a client or browser logs in to the system. A runtime module on the protected server receives the login request and intercepts all other request by the client to use a resource. The runtime module connects to an access server that can determine whether a particular user is authentic and which resources the user is authorized to access. User information is associated with roles and functional groups of an organization to which the user belongs; the roles are associated with access privileges. The access server connects to a registry server that stores information about users, roles, functional groups, resources, and associations among them. The access server and registry server exchange encrypted information that authorized the user to use the resource. The access server passes encrypted tokens that define the user's roles and authorization rights to the browser or client, which stores the tokens in memory. The user is presented with a customized display showing only those resources that the user may access. Thereafter, the access server can resolve requests to use other resources based on the tokens without contacting the registry server.
信息查询
0/0