Patent ReferencesDistributed security procedure for intelligent networks System for determining direct and indirect user access privileges to data base objects Computer system security method and apparatus for creating and using program authorization information data structures Method and system for access and accounting control in a data processing system by using a single resource account for a user or a group of users Methods and apparatus for implementing secure name servers in an object-oriented system Method and system for facilitating access control to system resources in a distributed computer system Distribution file system for accessing required portion of file Capability security for transparent distributed object systems Information handling system, method, and article of manufacture for efficient object security processing by grouping objects sharing common control access policies System, method and article of manufacture for network electronic authorization utilizing an authorization instrument Patent #: 5815657 InventorApplicationNo. 988857 filed on 12/11/1997US Classes:709/217, REMOTE DATA ACCESSING709/225Computer network access regulatingExaminersPrimary: Sheikh, Ayaz R.Assistant: Pancholi, Jigar Attorney, Agent or FirmForeign Patent References
International ClassG06F 015/163AbstractA method and apparatus for establishing and maintaining complex security rules is provided. The security rules are established through the use of "permission" classes that take advantage of the power and simplicity various features of object oriented programming, including the ability to inherit attributes and methods. For example, a permission super class is established that defines an interface to a validation method. A permission subclass may then be created which provides an implementation of the validation method. When invoked, the validation method indicates whether a given permission represented by one object belonging to a permission class encompasses the permission represented by another object belonging to a permission class. Classes are also provided for grouping permissions into sets, and for establishing protection domains for classes of objects.Other References
| |