Access permissions entitlement review
First Claim
Patent Images
1. A system for operating an enterprise computer network including multiple network objects, said system comprising:
- at least one monitoring and collection module for obtaining continuously updated information regarding at least one of access permissions and actual usage of said network objects; and
at least one entitlement review by owner module operative;
to present to at least one of at least one owner and at least one authorizer of at least one network object a visually sensible indication of authorization status, said visually sensible indication of authorization status including at least a list of users and user groups having access permissions to said at least one network object, said at least one authorizer being delegated responsibility with respect to said at least one network object by said at least one owner;
to require said at least one of said at least one owner and said at least one authorizer to review said authorization status;
responsive to said review, to allow said at least one of said at least one owner and said at least one authorizer to modify said authorization status;
responsive to said at least one of said at least one owner and said at least one authorizer not modifying said authorization status, to require said at least one of said at least one owner and said at least one authorizer to confirm said authorization status; and
responsive to said at least one of said at least one owner and said at least one authorizer modifying said authorization status, to require said at least one of said at least one owner and said at least one authorizer to confirm said modified authorization status.
0 Assignments
0 Petitions
Accused Products
Abstract
A system for operating an enterprise computer network including multiple network objects, said system comprising monitoring and collection functionality for obtaining continuously updated information regarding at least one of access permissions and actual usage of said network objects, and entitlement review by owner functionality operative to present to at least one owner of at least one network object a visually sensible indication of authorization status including a specific indication of users which were not yet authorized by said at least one owner of said at least one network object.
-
Citations
10 Claims
-
1. A system for operating an enterprise computer network including multiple network objects, said system comprising:
-
at least one monitoring and collection module for obtaining continuously updated information regarding at least one of access permissions and actual usage of said network objects; and at least one entitlement review by owner module operative; to present to at least one of at least one owner and at least one authorizer of at least one network object a visually sensible indication of authorization status, said visually sensible indication of authorization status including at least a list of users and user groups having access permissions to said at least one network object, said at least one authorizer being delegated responsibility with respect to said at least one network object by said at least one owner; to require said at least one of said at least one owner and said at least one authorizer to review said authorization status; responsive to said review, to allow said at least one of said at least one owner and said at least one authorizer to modify said authorization status; responsive to said at least one of said at least one owner and said at least one authorizer not modifying said authorization status, to require said at least one of said at least one owner and said at least one authorizer to confirm said authorization status; and responsive to said at least one of said at least one owner and said at least one authorizer modifying said authorization status, to require said at least one of said at least one owner and said at least one authorizer to confirm said modified authorization status. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10)
-
Specification