EP1350167A1

System and method for application-level security

Abstract

This record has no abstract on file.

Term

Term ended

Projected expiry passed 16 November 2021, 4.9 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

49 claims: 2 independent, 47 dependent

  1. 1
    Claims of equivalent WO 0241150 A1 CLAIMS WHAT IS CLAIMED IS:1. A system for limiting access to the functionality of one or more software applications, comprising: a first memory configured to store first data related to each of the one or more software applications;the first memory further configured to store second data related to each of one or more users of any of the software applications;and a rules checker in communication with the software applications and the first memory, said rules checker configured to: receive at least one query, said query originating from any particular one of the software applications, and forward a message to the particular software application in response to the query;wherein said message provides instructions to the particular software application regarding entitlements of one of the users to access a particular function of the particular software application.
  2. 25
    A method for providing application-level security, said method comprising the steps of:storing first data relating to a plurality of software applications;storing second data relating to a plurality of users of the software applications;receiving a query from a particular one of the software applications;in response to the query, forwarding a message to the particular software application, said message providing instructions to the particular software application regarding entitlements of a particular user to access a function of the particular software application.
  3. 41
    A computer readable medium bearing instructions for providing application-level security, said instructions being arranged to cause one or more processors upon execution thereof to perform the steps of:storing first data relating to a plurality of software applications;storing second data relating to a plurality of users of the software applications;receiving a query from a particular one of the software applications;in response to the query, forwarding a message to the particular software application, said message providing instructions to the particular software application regarding entitlements of a particular user to access a function of the particular software application. 41. The system according to claim 14, further comprising: a non- volatile data store indicating a hierarchical arrangement of the plurality of access levels, and wherein the rules checker is further configured to consult the data store when determining the authorization of that particular user.