"Time Governed Database Access Controls

IP.com Number IPCOM000172236D
thumb 01 thumb 02 thumb 03 thumb 04
Scaled page rendering of the first four pages
Dated Jul 7, 2008 UTC
Size 2 page(s) (100.3 KB)
 
Disclosed by IBM-IPCOM

Publication Summary

Disclosed is the method to solve the current problems with grant privileges, grant role privileges with in database product. By having the self expired and system managed “Grant”, Grant Role” privileges will help database DBA to manage objects level privileges in better way.
Country
Language English (United States)

About this Publication

This document was submitted to IP.com's Prior Art Database and this preview is designed to provide you with information regarding the contents of this document by displaying up to the first four pages of the document as scaled page renderings and displaying a limited amount of text which was extracted from the document on the Text Preview Tab.

To find out more on how to obtain the entire document, click the Download tab. There is a charge for downloading some Prior Art Database documents; please examine carefully whether you believe this document fills your needs before purchasing.

For more information about the Prior Art Database, visit the Learn section of this website. Thank you for visiting IP.com's Prior Art Database! You may wish to check out our Global Patent Search website before you leave.

Continue to Text Preview →

This text was extracted from a PDF file.
This is the abbreviated version, containing approximately 75% of the total text.
This text was extracted from a PDF file.

Page 1 of 2

"Time Governed Database Access Controls

Inventor -Bhaveshkumar R Patel

IBM

Time Governed Database Access Controls

This invention solves one of the current problems with the privileges granted in an SQL-based DBMS, namely that a privilege cannot be granted for a limited period of time without manual intervention to remove the privilege.

An important - even critical - part of managing any database is managing the privileges given to users for manipulating objects with the database. In all SQL DBMS, a suitably privileged user (typically, a DBA) manually grants and revokes the privileges.

Sometimes, it is desirable to be able to grant privileges to a user for a limited period of time. Currently, this requires the DBA to revoke the privileges manually at the time when the privilege expires. This invention permits the DBMS to revoke privileges automatically if the DBA sets the time when the privilege expires.

In today's world, Total Cost of Ownership (TCO) is very important to customers. To reduce the TCO, many costly systems are shared by multiple users (for example, mainframe computers are shared across multiple users and customers), and hundreds or thousands of users may connect at the same time to the system and the databases. It is difficult for a DBA to keep track of and revoke user privileges manually.

Proposal:

This proposal adds a small extension to the current SQL standard - ISO/IEC 9075-2:2003 SQL/Foundation.

By havin...

Download This Document →

 

Copyright © 2004-2010 IP.com. All Rights Reserved.

Privacy Policy   |   About IP.com   |   Contact Us