( 2 of 2 ) |
United States Patent | 6,792,462 |
Bernhardt , et al. | September 14, 2004 |
Systems, methods and computer program products are provided for distributed administration of a network environment having defined administrator authorities. A plurality of rules are defined specifying ones of a plurality of entity objects without administrator authority authorized to invoke administration powers to establish properties of target entity objects. In various embodiments, such rules are based on one or more of the properties of the target ones of the entity. An administrator application identifies one of the rules associated with one of the administration powers for one of the properties to be established and obtains a property of the target entity object designated by the identified rule to determine if the action is authorized. The administrator executes the identified one of the rules to determine if the requesting entity object is authorized to invoke the associated administration power to establish the designated one of the properties of the target entity object and establishes the designated one of the properties of the target entity object if the requesting entity object is so authorized.
Inventors: | Bernhardt; Thomas (Spring, TX), Erickson; Marcus Richard (Sugar Land, TX), Vaidya; Chandrashekhar (Sugar Land, TX) |
Assignee: |
NetIQ Corporation
(San Jose,
CA)
|
Appl. No.: | 09/760,540 |
Filed: | January 16, 2001 |
Current U.S. Class: | 709/225 ; 709/223; 709/229 |
Current International Class: | G06Q 10/00 (20060101); H04L 12/24 (20060101); G06F 015/173 () |
Field of Search: | 709/225,223,229 |
5991802 | November 1999 | Allard et al. |
6105069 | August 2000 | Franklin et al. |
OnePoint Dictionary, Resource, and Exchange User's Guide; One Point Directory, Resource, and Exchange Administrator Guide; Mission Critical Software, Inc.; 1995-1999.. |