×

Access requests at IAM system implementing IAM data model

  • US 9,536,070 B2
  • Filed: 03/08/2016
  • Issued: 01/03/2017
  • Est. Priority Date: 12/20/2012
  • Status: Active Grant
First Claim
Patent Images

1. A non-transitory computer-readable medium having instructions stored thereon for provisioning access rights to physical computing resources, wherein the instructions, when executed by a processor of a computing device, cause the computing device to:

  • receive a request to provision one or more access rights for a user account, the request specifying a business activity;

    identify a set of logical permissions based, at least in part, on the request by obtaining a set of business tasks associated with the business activity and identifying, as the set of logical permissions, one or more logical permissions respectively associated with individual business tasks in the set of business tasks;

    derive a set of logical entitlements based, at least in part, on the set of logical permissions;

    translate the set of logical entitlements to a physical entitlement specification based, at least in part, on a set of physical permission specifications wherein each physical permission specification in the set of physical permission specifications is associated with one of the logical permissions in the set of logical permissions; and

    provision one or more access rights for the user account to at least one physical computing resource indicated in the physical entitlement specification.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×