×

Attribute rule enforcer for a directory

  • US 7,328,210 B2
  • Filed: 08/01/2001
  • Issued: 02/05/2008
  • Est. Priority Date: 08/01/2001
  • Status: Expired due to Fees
First Claim
Patent Images

1. A method for processing calls to a directory access server, comprising:

  • intercepting a call from a client computer to a directory access server, the call consisting of one of a request to add data to a directory associated with the directory access server, a request to modify data in the directory, and a request to delete data from the directory, the call further including at least one attribute associated with data having a data content and a data structure;

    evaluating the attribute according to a first rule governing data content that is permissible to be forwarded to the directory access server and a second rule governing data structure that is permissible to be forwarded to the directory access server;

    the first and second rules including a data addition rule when the call includes a request to add data to the directory;

    the first and second rules including a data modification rule when the call includes a request to modify data in the directory;

    the first and second rules including a data deletion rule when the call includes a request to delete data from the directory;

    determining whether the attribute complies with the first rule and the second rule;

    forwarding the call to the directory access server if the attribute complies with the first rule and the second rule; and

    rejecting the call to the directory access server and forwarding an error message to a source of the call if the call attribute does not comply with the first rule and the second rule,said steps of evaluating the attribute and determining whether the attribute complies with the first rule and second rule being performed by an attribute rule enforcer interposed between the directory access server and the client computer.

View all claims
  • 7 Assignments
Timeline View
Assignment View
    ×
    ×