The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 03, 2015

Filed:

Dec. 22, 2011
Applicants:

Masaya Yamagata, Tokyo, JP;

Masayuki Nakae, Tokyo, JP;

Yoichiro Morita, Tokyo, JP;

Hideyuki Shimonishi, Tokyo, JP;

Kentaro Sonoda, Tokyo, JP;

Inventors:

Masaya Yamagata, Tokyo, JP;

Masayuki Nakae, Tokyo, JP;

Yoichiro Morita, Tokyo, JP;

Hideyuki Shimonishi, Tokyo, JP;

Kentaro Sonoda, Tokyo, JP;

Assignee:

NEC CORPORATION, Tokyo, JP;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 7/04 (2006.01); H04L 29/06 (2006.01); H04L 12/927 (2013.01); H04W 12/08 (2009.01); H04L 12/24 (2006.01);
U.S. Cl.
CPC ...
H04L 63/20 (2013.01); H04L 41/0893 (2013.01); H04L 47/808 (2013.01); H04W 12/08 (2013.01); H04L 63/10 (2013.01);
Abstract

The present invention implements detailed access control according to access rights granted to users, by a simple configuration. A communication system includes: a plurality of forwarding nodes that process a received packet in accordance with a processing rule (packet handling operation) associating a matching rule for identifying a flow and processing content to be applied to a packet that conforms with the matching rule; a policy management apparatus provided with an access control policy storage unit that associates roles assigned to users and access rights set for each role, the policy management apparatus providing information related to access rights associated with a role of a user who is successfully authenticated, to a control apparatus; and the control apparatus that creates a path between a terminal of the user who is successfully authenticated and a resource that the user can access, based on information related to access rights received from the policy management apparatus, and sets a processing rule in a forwarding node in the path in question.


Find Patent Forward Citations

Loading…