JP7015916B2 - クライアントのためのアプリケーションの管理をサポートするためのコンピュータ自動化方法、コンピュータ・プログラム、およびシステム - Google Patents

クライアントのためのアプリケーションの管理をサポートするためのコンピュータ自動化方法、コンピュータ・プログラム、およびシステム Download PDF

Info

Publication number
JP7015916B2
JP7015916B2 JP2020520757A JP2020520757A JP7015916B2 JP 7015916 B2 JP7015916 B2 JP 7015916B2 JP 2020520757 A JP2020520757 A JP 2020520757A JP 2020520757 A JP2020520757 A JP 2020520757A JP 7015916 B2 JP7015916 B2 JP 7015916B2
Authority
JP
Japan
Prior art keywords
permissions
client
app
permission
computer
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
JP2020520757A
Other languages
English (en)
Japanese (ja)
Other versions
JP2021500651A (ja
JP2021500651A5 (enExample
Inventor
ピーサル、オルギュルト
ブークハルツ、ヴィンセント
ユー、シャオ、ファン
フィッシャー、アンドレ
シャミツ、ユーゲン
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
International Business Machines Corp
Original Assignee
International Business Machines Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by International Business Machines Corp filed Critical International Business Machines Corp
Publication of JP2021500651A publication Critical patent/JP2021500651A/ja
Publication of JP2021500651A5 publication Critical patent/JP2021500651A5/ja
Application granted granted Critical
Publication of JP7015916B2 publication Critical patent/JP7015916B2/ja
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources
    • H04L63/101Access control lists [ACL]
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/604Tools and structures for managing or administering access control systems
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/28Restricting access to network management systems or functions, e.g. using authorisation function to access network configuration
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Signal Processing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • General Health & Medical Sciences (AREA)
  • Physics & Mathematics (AREA)
  • Software Systems (AREA)
  • General Physics & Mathematics (AREA)
  • Bioethics (AREA)
  • Health & Medical Sciences (AREA)
  • Automation & Control Theory (AREA)
  • Computing Systems (AREA)
  • Databases & Information Systems (AREA)
  • Storage Device Security (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)
JP2020520757A 2017-10-26 2018-10-18 クライアントのためのアプリケーションの管理をサポートするためのコンピュータ自動化方法、コンピュータ・プログラム、およびシステム Active JP7015916B2 (ja)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US15/795,048 2017-10-26
US15/795,048 US11457014B2 (en) 2017-10-26 2017-10-26 Access control in microservice architectures
PCT/IB2018/058090 WO2019082030A1 (en) 2017-10-26 2018-10-18 ACCESS CONTROL IN MICROSERVICE ARCHITECTURES

Publications (3)

Publication Number Publication Date
JP2021500651A JP2021500651A (ja) 2021-01-07
JP2021500651A5 JP2021500651A5 (enExample) 2021-02-18
JP7015916B2 true JP7015916B2 (ja) 2022-02-03

Family

ID=66243373

Family Applications (1)

Application Number Title Priority Date Filing Date
JP2020520757A Active JP7015916B2 (ja) 2017-10-26 2018-10-18 クライアントのためのアプリケーションの管理をサポートするためのコンピュータ自動化方法、コンピュータ・プログラム、およびシステム

Country Status (5)

Country Link
US (4) US11457014B2 (enExample)
JP (1) JP7015916B2 (enExample)
DE (1) DE112018004411B4 (enExample)
GB (1) GB2581913B (enExample)
WO (1) WO2019082030A1 (enExample)

Families Citing this family (26)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10841313B2 (en) * 2018-02-21 2020-11-17 Nutanix, Inc. Substituting callback URLs when using OAuth protocol exchanges
US11847241B1 (en) * 2018-04-20 2023-12-19 Amazon Technologies, Inc. Management of service permissions
US11134085B2 (en) * 2018-10-08 2021-09-28 Sonrai Security Inc. Cloud least identity privilege and data access framework
CN110381112A (zh) * 2019-06-05 2019-10-25 黄疆 一种基于微服务架构的存储装置集群
US10803453B1 (en) * 2019-11-19 2020-10-13 Capital One Services, Llc System, method and computer-accessible medium for resource centric authorization in multi partner ecosystem
US10902011B1 (en) 2020-01-31 2021-01-26 Capital One Services, Llc Systems and methods for context development
US10848451B1 (en) * 2020-01-31 2020-11-24 Capital One Services, Llc Systems and methods for context development
US20210240459A1 (en) * 2020-01-31 2021-08-05 Hewlett Packard Enterprise Development Lp Selection of deployment environments for applications
US11443037B2 (en) * 2020-07-09 2022-09-13 International Business Machines Corporation Identification of invalid requests
US11153227B1 (en) 2020-08-05 2021-10-19 International Business Machines Corporation Managing communication between microservices
CN112487379A (zh) * 2020-12-11 2021-03-12 光大兴陇信托有限责任公司 一种基于微服务架构的授权矩阵实现方法及工作方法
CN112632511B (zh) * 2020-12-31 2024-11-22 中国平安人寿保险股份有限公司 权限管理方法、装置及存储介质
CN115083512B (zh) * 2021-03-11 2024-09-27 西安交通大学 一种基于吸引子模型的终端微服务发现方法
EP4348475A4 (en) * 2021-05-28 2025-04-09 Capital One Services, LLC ACCESS PERMISSION COMPLIANCE IN IDENTITY AND ACCESS MANAGEMENT (IAM) SYSTEMS
EP4402569A4 (en) * 2021-09-15 2025-07-09 Hsbc Tech And Services Usa Inc APPLICATION PROGRAMMING INTERFACE (API) AUTOMATION FRAMEWORK
US12164676B2 (en) 2021-09-22 2024-12-10 Ridgeline, Inc. Enabling an action based on a permission identifier for real-time identity resolution in a distributed system
US12111940B1 (en) * 2021-12-03 2024-10-08 Amazon Technologies, Inc. Authorizing access to operating system resources using security policies managed by service external to the operating system
CN114491482B (zh) * 2022-01-07 2024-12-24 苏州众言网络科技股份有限公司 一种接口权限的控制方法、装置及电子设备
DE102022200162B3 (de) 2022-01-10 2023-05-04 Kuka Deutschland Gmbh Verfahren und System zum Betreiben eines Robotersystems
CN114666094B (zh) * 2022-02-17 2023-10-20 岚图汽车科技有限公司 一种车辆服务平台的用户权限管理方法及相关设备
US11971806B2 (en) 2022-02-23 2024-04-30 Bank Of America Corporation System and method for dynamic monitoring of changes in coding data
DE112023004715T5 (de) * 2022-11-07 2025-08-28 Google Llc Verwalten von informationen unter verwendung von undurchsichtigen token
US20240236101A1 (en) * 2023-01-06 2024-07-11 Stripe, Inc. Controlling access to data in a cloud-based software platform based on application authorization
CN119180021B (zh) * 2023-10-25 2025-09-02 北京小米移动软件有限公司 互联设备的行为管理方法及装置
US20250371182A1 (en) * 2024-05-28 2025-12-04 Palantir Technologies Inc. Systems and methods for access checking
US12438740B1 (en) * 2024-08-26 2025-10-07 Sandeep Navinchandra Shah System and method of managing an online communication group

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2012033189A (ja) 2004-10-01 2012-02-16 Microsoft Corp 統合されたアクセス認可
US20160366151A1 (en) 2015-06-11 2016-12-15 Canon Kabushiki Kaisha Authentication server system, method, and storage medium
US20170093857A1 (en) 2015-09-30 2017-03-30 Hiroshi HINOHARA Management system, communication system, and transmission control method
US20170230349A1 (en) 2016-02-04 2017-08-10 International Business Machines Corporation Microservices inter-operational trust management

Family Cites Families (19)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20020010768A1 (en) * 1998-12-17 2002-01-24 Joshua K. Marks An entity model that enables privilege tracking across multiple treminals
US7069335B1 (en) 1999-08-10 2006-06-27 Microsoft Corporation Method and system for exchanging messages between entities on a network comprising an actor attribute and a mandatory attribute in the header data structure
US6397264B1 (en) * 1999-11-01 2002-05-28 Rstar Corporation Multi-browser client architecture for managing multiple applications having a history list
US9594887B2 (en) 2010-12-30 2017-03-14 Thomson Reuters Global Resources Monetized online content systems and methods and computer-readable media for processing requests for the same
GB2487049A (en) * 2011-01-04 2012-07-11 Vestas Wind Sys As Remote and local authentication of user for local access to computer system
US8893268B2 (en) * 2011-11-15 2014-11-18 Microsoft Corporation Permission re-delegation prevention
US9886267B2 (en) 2014-10-30 2018-02-06 Equinix, Inc. Interconnection platform for real-time configuration and management of a cloud-based services exchange
CN105991613A (zh) 2015-03-03 2016-10-05 北京神州泰岳信息安全技术有限公司 一种资源远程登录方法及系统
US10075442B2 (en) 2015-06-30 2018-09-11 Vmware, Inc. Methods and apparatus to grant access to cloud computing resources
US10277582B2 (en) 2015-08-27 2019-04-30 Microsoft Technology Licensing, Llc Application service architecture
US10038722B2 (en) 2015-09-03 2018-07-31 Vmware, Inc. Access control policy management in a cloud services environment
US20170223057A1 (en) 2016-02-01 2017-08-03 General Electric Company System and method for access control services
WO2017193140A1 (en) * 2016-05-06 2017-11-09 Enterpriseweb Llc Systems and methods for domain-driven design and execution of modular and dynamic services, applications and processes
US10341410B2 (en) * 2016-05-11 2019-07-02 Oracle International Corporation Security tokens for a multi-tenant identity and data security management cloud service
US9781122B1 (en) 2016-05-11 2017-10-03 Oracle International Corporation Multi-tenant identity and data security management cloud service
CN106100840A (zh) 2016-08-25 2016-11-09 广州唯品会信息科技有限公司 微服务的权限变更方法及装置
US10616211B2 (en) * 2017-04-12 2020-04-07 Cisco Technology, Inc. System and method for authenticating clients
US20190080062A1 (en) * 2017-09-13 2019-03-14 Coursera Inc. Client call validity enforcement for microservices
US10853124B2 (en) * 2017-09-25 2020-12-01 Splunk Inc. Managing user data in a multitenant deployment

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2012033189A (ja) 2004-10-01 2012-02-16 Microsoft Corp 統合されたアクセス認可
US20160366151A1 (en) 2015-06-11 2016-12-15 Canon Kabushiki Kaisha Authentication server system, method, and storage medium
JP2017004301A (ja) 2015-06-11 2017-01-05 キヤノン株式会社 認証サーバーシステム、方法、プログラムおよび記憶媒体
US20170093857A1 (en) 2015-09-30 2017-03-30 Hiroshi HINOHARA Management system, communication system, and transmission control method
JP2017068596A (ja) 2015-09-30 2017-04-06 株式会社リコー 管理システム、通信システム、送信制御方法、及びプログラム
US20170230349A1 (en) 2016-02-04 2017-08-10 International Business Machines Corporation Microservices inter-operational trust management

Also Published As

Publication number Publication date
US11477199B2 (en) 2022-10-18
GB2581913B (en) 2022-08-17
US20220337593A1 (en) 2022-10-20
JP2021500651A (ja) 2021-01-07
DE112018004411B4 (de) 2025-12-18
WO2019082030A1 (en) 2019-05-02
US20190132320A1 (en) 2019-05-02
US12149531B2 (en) 2024-11-19
US11457014B2 (en) 2022-09-27
GB202007338D0 (en) 2020-07-01
US20220368694A1 (en) 2022-11-17
GB2581913A (en) 2020-09-02
DE112018004411T5 (de) 2020-07-16
US20190253424A1 (en) 2019-08-15
US12155664B2 (en) 2024-11-26

Similar Documents

Publication Publication Date Title
JP7015916B2 (ja) クライアントのためのアプリケーションの管理をサポートするためのコンピュータ自動化方法、コンピュータ・プログラム、およびシステム
EP4278566B1 (en) Limiting scopes in token-based authorization systems
US10454938B2 (en) Dynamic permission roles for cloud based applications
US8544068B2 (en) Business pre-permissioning in delegated third party authorization
US10944560B2 (en) Privacy-preserving identity asset exchange
US11102196B2 (en) Authenticating API service invocations
US20180198845A1 (en) Local Microservice Development for Remote Deployment
US20170324746A1 (en) Uniformly accessing federated user registry topologies
US20190356698A1 (en) Temporary interface to provide intelligent application access
US8875243B1 (en) Identity abstraction providing limited cross-domain access
US9672382B2 (en) Managing access of user information by third party applications
US10891386B2 (en) Dynamically provisioning virtual machines
CN115299011B (zh) 云环境中的隐私中心数据安全
US10542048B2 (en) Security compliance framework usage
US9843605B1 (en) Security compliance framework deployment

Legal Events

Date Code Title Description
A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20201224

A621 Written request for application examination

Free format text: JAPANESE INTERMEDIATE CODE: A621

Effective date: 20210323

A977 Report on retrieval

Free format text: JAPANESE INTERMEDIATE CODE: A971007

Effective date: 20211228

TRDD Decision of grant or rejection written
A01 Written decision to grant a patent or to grant a registration (utility model)

Free format text: JAPANESE INTERMEDIATE CODE: A01

Effective date: 20220118

A61 First payment of annual fees (during grant procedure)

Free format text: JAPANESE INTERMEDIATE CODE: A61

Effective date: 20220124

R150 Certificate of patent or registration of utility model

Ref document number: 7015916

Country of ref document: JP

Free format text: JAPANESE INTERMEDIATE CODE: R150