US 11,930,010 B2
Access control system and method
Rob Hydell, Ponte Vedra Beach, FL (US); Jason L. Young, Shelby Township, MI (US); and Pavel Lobashov, Brooklyn, NY (US)
Assigned to JPMORGAN CHASE BANK, N.A., New York, NY (US)
Filed by JPMorgan Chase Bank, N.A., New York, NY (US)
Filed on Nov. 18, 2021, as Appl. No. 17/529,435.
Application 17/529,435 is a continuation of application No. 16/448,278, filed on Jun. 21, 2019, granted, now 11,212,285.
Application 16/448,278 is a continuation of application No. 14/970,743, filed on Dec. 16, 2015, granted, now 10,375,071, issued on Aug. 6, 2019.
Prior Publication US 2022/0078190 A1, Mar. 10, 2022
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 29/06 (2006.01); H04L 9/40 (2022.01)
CPC H04L 63/10 (2013.01) [H04L 63/101 (2013.01); H04L 63/104 (2013.01); H04L 63/20 (2013.01)] 20 Claims
OG exemplary drawing
 
1. An access control computing system for controlling access to multiple target servers in a networked environment, the access control computing system comprising:
an access control user interface accessible to the multiple target servers;
a computer memory storing an access control database providing information to the access control user interface; and
a management server including an access control processor, the access control processor implementing:
a discovery engine for discovering user rights stored at the multiple target servers and delivering the user rights stored at the multiple target servers over the network to the access control database; and
an event trigger engine
invoked by detection of a request to add or delete a user or group to a list of privileged groups from a first target server,
updating the user rights at a local cache on the first target server, and
delivering the updated user rights to the access control database,
wherein the event trigger engine is configured to modify the discovery engine based on the detection of the request to add or delete a user or group to a list of privileged groups, and
wherein a local security account manager database is changed
to insert a domain account to a local group, providing access to the local group in response to the request to add a user or group to a list of privileged groups, and
to remove a domain account from the local group revoking access to the local group, in response to the request to delete a user or group from a list of privileged groups.