×

FINE-GRAINED, LABEL-BASED, XML ACCESS CONTROL MODEL

  • US 20090063951A1
  • Filed: 09/01/2007
  • Published: 03/05/2009
  • Est. Priority Date: 09/01/2007
  • Status: Active Grant
First Claim
Patent Images

1. A computer program product comprising a computer readable medium having:

  • computer usable program code executable to perform operations to control access to an XML document comprising a plurality of nodes and a plurality of paths between each of the nodes, the operations of the computer program product comprising;

    referencing a schema definition comprising a path security label definition associated with a sibling-to-sibling path of an XML document;

    receiving an XML document to be validated by comparison with the schema definition;

    comparing the XML document to the schema definition;

    verifying that the XML document has a path security label associated with a sibling-to-sibling path that is at least as restrictive as that specified by the path security label definition of the schema definition for the nodes associated with the sibling-to-sibling path;

    determining an access security label assigned to a user seeking to access the sibling-to-sibling path protected by the path security label;

    comparing, using pre-determined access rules, the path security label to the access security label to determine whether the user is authorized to access the sibling-to-sibling path; and

    controlling access to the sibling-to-sibling path in accordance with the access rules.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×