SCOPE-BASED ACCESS CONTROL SYSTEM AND METHOD

A scope-based access control system includes a systems manager that is executed to receive a request to perform an operation on one of multiple computing devices in which the request includes a session identifier associated with an established session of a user who issued the request. The systems ma...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Shetty, Sudhir Vittal, Donepudi, Venkata Bala Koteswararao, Iyer, Pushkala
Format: Patent
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:A scope-based access control system includes a systems manager that is executed to receive a request to perform an operation on one of multiple computing devices in which the request includes a session identifier associated with an established session of a user who issued the request. The systems manager forwards the request and the session identifier to a global authentication authority. The global authentication authority responds to the request by issuing a claim that specifies a computing device group that the session is authorized to access. The systems manager receives the claim specifying a computing device group from the global authentication authority. The systems manager then performs the operation based on whether the one computing device is included in the computing device group.