CPC H04L 63/101 (2013.01) | 17 Claims |
1. A computer-implementable method for providing common identity and access management of applications based on role-based access control (RBAC) model and attribute-based access control (ABAC) model comprising:
implementing a common model based on the ABAC model to support RBAC workflows and ABAC workflows;
receiving the RBAC workflows through an RBAC management user interface;
receiving the ABAC workflows through an ABAC management user interface, wherein the ABAC workflows are implemented by the common model based on the ABAC model; and
converting the RBAC workflows to an ABAC model structure to be implemented by the common model based on the ABAC model, wherein the applications are interactive with users requesting access to protected objects, wherein an ABAC decision endpoint and RBAC decision endpoint are provided for the applications to leverage, based on whether an application uses the RBAC model or the ABAC model, the RBAC decision endpoint adapts output of a policy decision point (PDP) and policy enforcement point (PEP) of the ABAC decision endpoint to RBAC response structures.
|