作者: Frederick L. Janis
DOI:
关键词:
摘要: Variable authority level user access control for a plurality of resource objects within distributed data processing system having managers. A reference monitor service is established and profiles are stored therein, each including an identification selected specified associated with that user. Thereafter, exchanged between the manager in response to attempted particular object controlled by manager. The may then utilizing profile determine extent permitted means contained therein. In preferred embodiment present invention, intent determined conjunction stored. comparison stated be utilized grant or deny access.