×

Method for delegating access rights through executable access control program without delegating access rights not in a specification to any intermediary nor comprising server security

  • US 5,649,099 A
  • Filed: 06/04/1993
  • Issued: 07/15/1997
  • Est. Priority Date: 06/04/1993
  • Status: Expired due to Term
First Claim
Patent Images

1. In a computing system comprising a server, a client, and at least one intermediary, a method of processing an ultimate request to the server, the ultimate request being delivered to the server as the final request in a chain comprising at least two linked requests, the client and all the intermediaries each being associated with one linked request of the chain, the intermediary that delivers the ultimate request to the server being the final intermediary in the chain and being designated as the requestor, the method comprising the steps of:

  • using the requestor to present to the server the ultimate request in conjunction with at least one executable access control program comprising at least one sequence of computer program instructions, the access control program being executable by a processor to express a specification of a set of access rights;

    using the server to execute each access control program thus presented, each access control program being executed in a manner such that said access control program is prevented from compromising server security; and

    if and only if the execution of each access control program thus presented is successful, using the server to execute the ultimate request in a manner consistent with the set of access rights, any access rights not in the set of access rights not being delegated to any intermediary nor being granted by the server.

View all claims
  • 6 Assignments
Timeline View
Assignment View
    ×
    ×