Patent · US Active

Role discovery for identity and access management in a computing system

US11451554B2 · kind B2 · utility

0Cited by
41References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMay 7, 2019
Grant dateSep 20, 2022
Priority date
Expiry dateMay 1, 2041

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L67/535
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

Methods, apparatuses, and systems are described for provisioning access rights in a computing system. A data structure may be created that corresponds to the access rights of a computing system. The data structure may be traversed to identify candidate bundles of access rights that correspond to patterns of access rights in the computing system. The candidate bundles of access rights may be evaluated to select one or more bundles to define as one or more roles in the computing system. The defined roles may then be provisioned to the users of the computing system as a replacement for the individual access rights. Various constraints may be applied to reduce the number of candidate bundles of access rights to evaluate.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.