Method and system for assigning access control levels in providing access to networked content files
First Claim
Patent Images
1. An intermediary device between a server and a client node, for granting the client node access to resources, the intermediary device comprising:
- a first module initiating information gathering on a client node via a collection agent responsive to a request from the client node to access a resource;
a first component of a policy engine receiving the gathered information and generating a dataset comprising a plurality of identifiers, each of the plurality of identifiers identifying a respective condition satisfied by the gathered information;
a second component of the policy engine granting one of a plurality of levels of access to the client node for accessing the resource, responsive to application of a policy to the generated dataset; and
a transformation server receiving the request for the resource from the policy engine, and in response to the one of the plurality of levels of access granted, transforming the contents of the resource from a native format to a second format, and presenting the transformed contents of the resource to the client node.
7 Assignments
0 Petitions
Accused Products
Abstract
A method and system for assigning access control levels when granting access to resources includes a client node, a collection agent, and a policy engine. The client node requests access to a resource. The collection agent gathers information about the client node. The policy engine receives the gathered information and assigns one of a plurality of levels of access responsive to application of a policy to the received information and transmits the information.
332 Citations
34 Claims
-
1. An intermediary device between a server and a client node, for granting the client node access to resources, the intermediary device comprising:
-
a first module initiating information gathering on a client node via a collection agent responsive to a request from the client node to access a resource; a first component of a policy engine receiving the gathered information and generating a dataset comprising a plurality of identifiers, each of the plurality of identifiers identifying a respective condition satisfied by the gathered information; a second component of the policy engine granting one of a plurality of levels of access to the client node for accessing the resource, responsive to application of a policy to the generated dataset; and a transformation server receiving the request for the resource from the policy engine, and in response to the one of the plurality of levels of access granted, transforming the contents of the resource from a native format to a second format, and presenting the transformed contents of the resource to the client node. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20, 21)
-
-
22. A method of granting, by an intermediary between a server and a client node, access to resources, the method comprising:
-
(a) initiating, by an intermediary device, information gathering on a client node by a collection agent in response to a request from the client node for access to a resource; (b) receiving, by a first component of a policy engine of the intermediary device, the gathered information about the client node; (c) generating, by the first component, a dataset comprising a plurality of identifiers, each of the plurality of identifiers identifying a respective condition satisfied by the gathered information (d) granting, by a second component of the policy engine, one of a plurality of levels of access to the client node for accessing the resource, responsive to application of a policy to the generated dataset; and (e) transforming, by a transformation server of the intermediary device in response to the one of the plurality of levels of access granted, the contents of the resource from a native format to a second format for presentation to the client node. - View Dependent Claims (23, 24, 25, 26, 27, 28, 29, 30, 31, 32, 33, 34)
-
Specification