FIELD: information technology.
SUBSTANCE: input of authorisation unit of the user is connected to the input of authorisation of the user, the first input of the unit for generating a table (matrix) of access rules is connected to the output of the authorisation unit of the user, to the second input of the unit of rule selection from the table (matrix) of the access rules, the second input of the unit for generating a table (matrix) of access rules is connected to the input of setting the rule of generating a table (matrix) of the access rules, the third input - to the input of setting the rules of access to the resources of the subject, the output - to the input of the storage unit of the table (matrix) of the access rules for the subject, the output of which - to the first input of the unit of selection of the rule from the table (matrix) of the access rules, the third input of which - to the input of the setting the rule of selection of the rule from the table (matrix) of the access rules, the fourth input - to the input of an access request to the resource of the subject, to the second input of the unit of analysis of the access request, the first input of which - to the output of the unit of selection of the rule from the table (matrix) of the access rules, the output - to the output of admission/prohibition of the requested access to the resource.
EFFECT: enhanced functional capabilities of access control to resources.
2 dwg, 3 tbl
Title | Year | Author | Number |
---|---|---|---|
SYSTEM FOR CONTROLLING ACCESS TO COMPUTER SYSTEM RESOURCES WITH "INITIAL USER, EFFECTIVE USER, PROCESS" SUBJECT | 2013 |
|
RU2534488C1 |
SYSTEM FOR REFORMING OBJECT IN ACCESS REQUEST | 2013 |
|
RU2538918C1 |
SYSTEM FOR SESSION-BASED CONTROL OF ACCESS TO CREATED FILES | 2013 |
|
RU2583757C2 |
SYSTEM FOR CONTROLLING FILE ACCESS BASED ON AUTOMATIC TAGGING THEREOF | 2013 |
|
RU2524566C1 |
SYSTEM FOR RESTRICTING ACCESS TO FILE EXTENSIONS | 2014 |
|
RU2572385C2 |
SYSTEM FOR CONTROLLING ACCESS TO FILES BASED ON MANUAL AND AUTOMATIC MARKUP THEREOF | 2013 |
|
RU2543556C2 |
SYSTEM FOR SESSION-BASED FILE OBJECT ACCESS CONTROL | 2013 |
|
RU2562410C2 |
SYSTEM FOR SESSION-BASED RESOURCE ACCESS CONTROL | 2013 |
|
RU2543561C1 |
SYSTEM FOR CONTROLLING ACCESS TO FILES BASED ON AUTOMATIC MARKUP THEREOF WITH ARRANGEMENT OF ACCOUNT DATA OF ACCESS SUBJECT TO CREATED FILE | 2015 |
|
RU2583759C1 |
RESOURCE ACCESS DIFFERENTIATION SYSTEM | 2001 |
|
RU2207619C2 |
Authors
Dates
2014-11-27—Published
2013-04-30—Filed