Provision of Secure Access to External Resources from a Distributed Computing Environment
Опубликовано: 16-06-1996
Автор(ы): Michael S. Fortinsky
Принадлежит: IBM Canada Ltd
Реферат: In a distributed computing environment, in which a client needing to access a server is issued, by a security server, with a ticket including an encoded certificate identifying, when decoded, the identity and privilege attributes of the client in a format understood by a server within the environment, access to a resource external to the environment through such a server within the environment is provided, when a request involving such access is received by the security server, by issuing an extended certificate including additional data which can be decoded to provide information decoded as to the identity and privilege attributes of the client with respect to and in a format acceptable to the external server, the additional data being recognized and decodable and formatable by that server within the environment which provides access to the external server, but transmitted withinthe environment in a format compatible with the certificates in regular tickets. A security server issuing a ticket including such an extended privilege attribute certificate has a registry extended to include data as to a client's privilege attributes with respect to accessible external servers, together with data as to the structure in which such data is to be presented, and an application server required to handle such extended certificates has attribute handlers to structure the decoded data for presentation to the external server.
Method and apparatus for an account managed object class model in a distributed computing environment
Номер патента: US5872914A. Автор: Gregory Alan Wilson,Kenneth Walker, Jr.. Владелец: International Business Machines Corp. Дата публикации: 1999-02-16.