Patents Represented by Attorney Derek K. Martin
  • Patent number: 7320074
    Abstract: An apparatus and method use the built-in authentication and authorization functions of a directory service to perform authentication and authorization for resources that are external to the directory service. A Lightweight Directory Access Protocol (LDAP) service is used in the preferred embodiments. The LDAP directory includes built-in functions for authenticating a user that requests access to an entry. Each resource that needs to be protected is mapped to an entry in the LDAP directory. These entries that correspond to protected resources external to the LDAP directory are called proxy entries. Proxy entries contain the authorization information for the corresponding protected resource in the form of an access control list for each entry that specifies the authorized users of the entry.
    Type: Grant
    Filed: June 28, 2006
    Date of Patent: January 15, 2008
    Assignee: International Business Machines Corporation
    Inventors: Thomas John Eggebraaten, Patrick Jerome Fleming