Inventors:
Douglas Hale - Orem UT, US
Michael Wright - Sandy UT, US
Merrill Smith - Riverton UT, US
David Cox - Orem UT, US
Kyle Seegmiller - Salt Lake City UT, US
Jonathan Wood - Spanish Fork UT, US
International Classification:
G06F011/30
Abstract:
A method and system for access control within a protocol stack includes: receiving a request to perform an operation at a layer of the protocol stack; calling an access mediator; determining if the request is to be granted based upon a predetermined security policy by the access mediator; and providing the determination by the access mediator. The Access Mediator is a software which embodies the rules of a predetermined security policy. In the preferred embodiment, the security policy is subject (people) based. The rules of the security policy determines which subjects can have access to which objects (data) to perform a requested operation (read/write). The Access Mediator is called to determine whether or not a request to perform an operation is to be granted based upon the security policy. In this manner, access control is provided within the protocol stack.