会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • SYSTEM AND METHOD FOR A BUSINESS DATA PROVISIONING FOR A PRE-EMPTIVE SECURITY AUDIT
    • 用于预先安全审计业务数据提供的系统和方法
    • US20120167200A1
    • 2012-06-28
    • US12978797
    • 2010-12-27
    • Cristina BuchholzBare Said
    • Cristina BuchholzBare Said
    • G06F21/00
    • G06F21/6218
    • Embodiments of the present invention may provide a system and method for business data provisioning for a pre-emptive security audit. In one aspect, a method embodiment may comprise the steps of identifying the business resources as expressed in business terms, ensuring that applications dealing with (parts of) the business resources are aware of the link to the resource, transmitting the information about the used business resources throughout the call stack up to the UI, making use of the highest access enforcement point possible where it can be ensured that access to the protected resource is only done through either authorized users or trusted code, and having this access enforcement point taken over by a framework to ensure adequate protection even in extensibility scenarios.
    • 本发明的实施例可以提供用于预先安全审计的业务数据提供的系统和方法。 一方面,方法实施例可以包括以业务术语表示的业务资源的识别步骤,确保处理(部分)业务资源的应用程序知道与资源的链接,传送关于所使用的业务的信息 整个调用堆栈中的资源直到UI,利用最高的访问执行点,可以确保只有通过授权用户或受信任的代码才能访问受保护的资源,并将该访问执行点接管 即使在可扩展情况下也能确保充分保护的框架。
    • 7. 发明申请
    • PUSH-DOWN OF AUTHORITY CHECK WITHIN QUERY ENGINE
    • 在查询引擎中按权限检查
    • US20140181134A1
    • 2014-06-26
    • US13724706
    • 2012-12-21
    • Marcel HermannsHans-Christian HumprechtCristina BuchholzPeter Drews-WalklingRoland Lucius
    • Marcel HermannsHans-Christian HumprechtCristina BuchholzPeter Drews-WalklingRoland Lucius
    • G06F17/30
    • G06F21/6227G06F16/2457
    • A query engine for integrating authorization conditions within a database query statement. The query engine may include an authorization handler configured to receive authorization parameters related to one or more authorization objects for data relevant to a query for performing an authority check, and obtain at least one user authorization profile for a current user based on the authorization parameters. The at least one user authorization profile may include an activity value and one or more authorization conditions associated with the activity value. The query engine may further include a query generator configured to receive query parameters related to the query and integrate the query parameters with the one or more authorization conditions to obtain a database query statement, and a database selector configured to obtain authorized data from an in-memory database based on the database query statement.
    • 用于在数据库查询语句中集成授权条件的查询引擎。 查询引擎可以包括授权处理器,其被配置为接收与用于执行权限检查的查询相关的数据的一个或多个授权对象的授权参数,并且基于授权参数获得当前用户的至少一个用户授权简档。 所述至少一个用户授权简档可以包括活动值和与活动值相关联的一个或多个授权条件。 所述查询引擎还可以包括查询生成器,其被配置为接收与所述查询相关的查询参数,并且将所述查询参数与所述一个或多个授权条件进行集成以获得数据库查询语句;以及数据库选择器, 内存数据库基于数据库查询语句。
    • 8. 发明申请
    • Role Based Access Management for Business Object Data Structures
    • 基于角色的业务对象数据结构访问管理
    • US20140172918A1
    • 2014-06-19
    • US13719063
    • 2012-12-18
    • Tim KornmannMarcel HermannsCristina BuchholzMichael HartelDaniel Zoch
    • Tim KornmannMarcel HermannsCristina BuchholzMichael HartelDaniel Zoch
    • G06F21/62
    • G06F21/6218G06F2221/2141
    • A service request from a user is received to execute an operation on an instance of a business object. Thereafter, an access control check is performed to confirm whether the user is allowed to execute the requested operation on a type of business object corresponding to the business object specified and based on an access group associated with the user. Subsequently, the user is either provided with access to the instance of the business object to execute the operation if the access control check confirms that the user is allowed to execute the operation on the instance of the business object, or prevented from accessing the instance of the business object to execute the operation on the instance of the business object. Related apparatus, systems, techniques and articles are also described. Related apparatus, systems, techniques and articles are also described.
    • 接收到来自用户的服务请求以对业务对象的实例执行操作。 此后,执行访问控制检查以确认是否允许用户对与所指定的业务对象相对应的业务对象的类型并且基于与用户相关联的访问组执行所请求的操作。 随后,如果访问控制检查确认允许用户对业务对象的实例执行操作,或者阻止访问该业务对象的实例,则向用户提供对业务对象的实例的访问以执行操作 该业务对象对业务对象的实例执行操作。 还描述了相关设备,系统,技术和物品。 还描述了相关设备,系统,技术和物品。
    • 10. 发明授权
    • User interface generation using a model layer
    • 使用模型层生成用户界面
    • US09223549B1
    • 2015-12-29
    • US14320274
    • 2014-06-30
    • Marcel HermannsCristina Buchholz
    • Marcel HermannsCristina Buchholz
    • G06F9/44G06F3/048
    • G06F8/38G06F3/048G06F8/315G06F8/34G06F9/451
    • Systems and methods are disclosed for developing a user interface. The method may include receiving a software development framework-independent data processing application of a consumption layer. A software development framework type may be received out of a plurality of supported software development framework types of a model layer. A plurality of object models adhering to the selected software development framework type may be displayed. A particular object model out of the plurality of object models may be received. A plurality of elements from the particular object model may be displayed for incorporation into the user interface. A selection of elements out of the plurality of elements may be received. The user interface may be generated, where the generating includes incorporating the selected elements for the software development framework-independent data processing application according to the particular object model of the selected software development framework type.
    • 公开了用于开发用户界面的系统和方法。 该方法可以包括接收消费层的与软件开发框架无关的数据处理应用。 可以从模型层的多个支持的软件开发框架类型中接收软件开发框架类型。 可以显示遵守所选择的软件开发框架类型的多个对象模型。 可以接收多个对象模型中的特定对象模型。 来自特定对象模型的多个元素可以被显示以合并到用户界面中。 可以接收多个元素中的元素的选择。 可以生成用户界面,其中生成包括根据所选择的软件开发框架类型的特定对象模型并入用于软件开发框架的数据处理应用的所选择的元素。