Patent · US Active

Policy-based data-centric access control in a sorted, distributed key-value data store

US9965641B2 · kind B2 · utility

0Cited by
6References
9Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 15, 2014
Grant dateMay 8, 2018
Priority date
Expiry dateDec 15, 2034

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2221/2145
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

A method, apparatus and computer program product for policy-based access control in association with a sorted, distributed key-value data store in which keys comprise n-tuple structure that includes a cell-level access control. In this approach, an information security policy is used to create a set of pluggable policies. A pluggable policy may be used during data ingest time, when data is being ingested into the data store, and a pluggable policy may be used during query time, when a query to the data store is received for processing against data stored therein. Generally, a pluggable policy associates one or more user-centric attributes (or some function thereof), to a particular data-centric label. By using pluggable policies, preferably at both ingest time and query time, the data store is enhanced to provide a seamless and secure policy-based access control mechanism in association with the cell-level access control enabled by the data store.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.