-
公开(公告)号:US12184659B2
公开(公告)日:2024-12-31
申请号:US18047727
申请日:2022-10-19
Applicant: Juniper Networks, Inc.
Inventor: Gurminder Singh , Pei-Yu Yang , Rong Xie
Abstract: This disclosure is directed to devices, systems, and techniques for enforcing access to resources within a computer network. In some examples, a system includes a network managed by a service provider and configured to provide a plurality of microservices to a plurality of tenants each having one or more users and a controller having access to the network. The controller is configured to output, to a user interface, data indicative of a plurality of capabilities for presentation by the user interface and receive, from the user interface, data indicative of a user selection of a set of capabilities and a user selection of a new role identifier. The controller is further configured to create, based on the set of capabilities and the role identifier, a role which enables access to a set of actions within a computer network, the set of actions corresponding to the set of capabilities.
-
公开(公告)号:US12113832B2
公开(公告)日:2024-10-08
申请号:US18057057
申请日:2022-11-18
Applicant: Juniper Networks, Inc.
Inventor: Gurminder Singh , Pei-Yu Yang , Rong Xie
CPC classification number: H04L63/20 , H04L63/104
Abstract: In some examples, a system includes a network managed by a service provider and configured to provide access to one or more objects to a set of tenants each having one or more users, the service provider and the set of tenants being part of a set of entities that form a hierarchy, and a controller having access to the network. The controller is configured to obtain data indicative of a set of parameters, where the data indicative of the set of parameters is associated with an owner entity of the set of entities, generate a rule which incorporates the set of parameters, where the rule enables the controller to control access to an object of the one or more objects, and add the rule to a rules database, wherein the rules database is accessible to the controller.
-
公开(公告)号:US20230079770A1
公开(公告)日:2023-03-16
申请号:US18057057
申请日:2022-11-18
Applicant: Juniper Networks, Inc.
Inventor: Gurminder Singh , Pei-Yu Yang , Rong Xie
IPC: H04L9/40
Abstract: In some examples, a system includes a network managed by a service provider and configured to provide access to one or more objects to a set of tenants each having one or more users, the service provider and the set of tenants being part of a set of entities that form a hierarchy, and a controller having access to the network. The controller is configured to obtain data indicative of a set of parameters, where the data indicative of the set of parameters is associated with an owner entity of the set of entities, generate a rule which incorporates the set of parameters, where the rule enables the controller to control access to an object of the one or more objects, and add the rule to a rules database, wherein the rules database is accessible to the controller.
-
公开(公告)号:US20230061080A1
公开(公告)日:2023-03-02
申请号:US18047727
申请日:2022-10-19
Applicant: Juniper Networks, Inc.
Inventor: Gurminder Singh , Pei-Yu Yang , Rong Xie
IPC: H04L9/40
Abstract: This disclosure is directed to devices, systems, and techniques for enforcing access to resources within a computer network. In some examples, a system includes a network managed by a service provider and configured to provide a plurality of microservices to a plurality of tenants each having one or more users and a controller having access to the network. The controller is configured to output, to a user interface, data indicative of a plurality of capabilities for presentation by the user interface and receive, from the user interface, data indicative of a user selection of a set of capabilities and a user selection of a new role identifier. The controller is further configured to create, based on the set of capabilities and the role identifier, a role which enables access to a set of actions within a computer network, the set of actions corresponding to the set of capabilities.
-
公开(公告)号:US11516254B2
公开(公告)日:2022-11-29
申请号:US16447733
申请日:2019-06-20
Applicant: Juniper Networks, Inc.
Inventor: Gurminder Singh , Pei-Yu Yang , Rong Xie
Abstract: In some examples, a system includes a network managed by a service provider and configured to provide access to one or more objects to a set of tenants each having one or more users, the service provider and the set of tenants being part of a set of entities that form a hierarchy, and a controller having access to the network. The controller is configured to obtain data indicative of a set of parameters, where the data indicative of the set of parameters is associated with an owner entity of the set of entities, generate a rule which incorporates the set of parameters, where the rule enables the controller to control access to an object of the one or more objects, and add the rule to a rules database, wherein the rules database is accessible to the controller.
-
公开(公告)号:US11516220B1
公开(公告)日:2022-11-29
申请号:US16235739
申请日:2018-12-28
Applicant: Juniper Networks, Inc.
Inventor: Gurminder Singh , Pei-Yu Yang , Rong Xie
Abstract: This disclosure is directed to devices, systems, and techniques for enforcing access to resources within a computer network. In some examples, a system includes a network managed by a service provider and configured to provide a plurality of microservices to a plurality of tenants each having one or more users and a controller having access to the network. The controller is configured to output, to a user interface, data indicative of a plurality of capabilities for presentation by the user interface and receive, from the user interface, data indicative of a user selection of a set of capabilities and a user selection of a new role identifier. The controller is further configured to create, based on the set of capabilities and the role identifier, a role which enables access to a set of actions within a computer network, the set of actions corresponding to the set of capabilities.
-
-
-
-
-