首页> 外国专利> CONTROLLING ACCESS TO CLOUD RESOURCES IN DATA USING CLOUD-ENABLED DATA TAGGING AND A DYNAMIC ACCESS CONTROL POLICY ENGINE

CONTROLLING ACCESS TO CLOUD RESOURCES IN DATA USING CLOUD-ENABLED DATA TAGGING AND A DYNAMIC ACCESS CONTROL POLICY ENGINE

机译:使用云的数据标记和动态访问控制策略引擎控制对数据中的云资源的访问

摘要

Access to data and resources in a multi-tenant computing system is managed by tagging the data and resources with attributes, as well as by tagging users with attributes. Tenant-specific access policies are configured. When an access request is received from a workload, a policy decision engine processes the attributes that are tagged to the requesting workload (e.g., user, application, etc.) as well as those tagged to the requested data or resource, given a relevant tenant-specific policy. An access decision is provided in response to the access request, and the access decision can be enforced by a tenant-specific enforcement system.
机译:通过将数据和资源标记具有属性的数据和资源,以及标记具有属性的用户来管理多租户计算系统中的数据和资源。配置特定于租户的访问策略。当从工作负载接收到访问请求时,策略决策引擎处理标记为请求工作负载(例如,用户,应用程序等)的属性以及标记为相关的租户标记为所请求的数据或资源的属性实行政策。响应于访问请求提供访问决定,并且可以由特定于租户的强制系统强制执行访问决定。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号