The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jul. 12, 2022

Filed:

Feb. 03, 2020
Applicant:

Microsoft Technology Licensing, Llc., Redmond, WA (US);

Inventors:

Michael Zeev Bargury, Ramat Gan, IL;

Gal Malka, Tel Aviv, IL;

Assignee:
Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 29/06 (2006.01); H04L 9/40 (2022.01); G06N 3/08 (2006.01); H04L 41/147 (2022.01); G06F 16/901 (2019.01); H04L 41/14 (2022.01); G06F 21/60 (2013.01);
U.S. Cl.
CPC ...
H04L 63/10 (2013.01); G06F 16/9024 (2019.01); G06F 21/604 (2013.01); G06N 3/08 (2013.01); H04L 41/145 (2013.01); H04L 41/147 (2013.01);
Abstract

The least-privilege permission needed for an identity, such as a user account, application, user group, or process, to access a resource of a tenant of a cloud service is determined from a predicted future resource usage. The predicted future resource usage is based on the resource usage history of an identity, the resource usage history of similar identities and the resource usage history of its peers. Similar identities are determined from node embeddings of a graph that represents the assigned permissions of an identity to a resource and the usage activity at a resource. The permissions needed to perform the predicted future resource usage is compared with the current permission assignments to determine the bare minimum permission that an identity needs for its ongoing and future workflow.


Find Patent Forward Citations

Loading…