TL;DR: In this paper, an improved file service administration method is disclosed in a computer network having an administrator account and a user account, which includes the step of displaying, in accordance with the administrator privilege and through the administrator account, the sharepoint on the computer display screen.
Abstract: An improved file service administration method is disclosed in a computer network having an administrator account and a user account. The administrator account has an administrator privilege, and the user account has a user privilege which is different from the administrator privilege. The computer network further includes at least one sharepoint that is selectively accessible through the user account. The includes the step of displaying, in accordance with the administrator privilege and through the administrator account, the sharepoint on the computer display screen. There is further included the step of modifying, through the administrator account, the access privilege for the user account. Furthermore, the method includes the step of displaying, in accordance with the user privilege and through the administrator account, the sharepoint and the access privilege for the user account. The sharepoint, when displayed in accordance with the user privilege, is represented in a first state when the access privilege for the user account to the sharepoint is enabled. On the other hand, the sharepoint is represented in a second state when the access privilege for the user account to the sharepoint is not enabled.
TL;DR: In this article, the authors describe a web-enabled building control appliance with a controller, a first port and a second port for serving up web pages on a first network and for receiving a number of responses on a second network.
Abstract: An HVAC control system that accommodates and/or facilitates control from a remote location. The HVAC control system may include a web-enabled building control appliance with a controller, a first port and a second port. The controller may implement a web server that is coupled to the first port for serving up one or more web pages on a first network and for receiving a number of responses. The controller may be coupled to the second port so as to communicate with one or more communicating thermostats via a second network. The web server may provide one or more web-pages via the first port that solicit and receive user rights privileges.
TL;DR: The security enhanced data platform is comprised of two primary subsystems and a host of supporting subsystems as discussed by the authors, which allows different user privilege requirements on the document as a whole as well as on pages, paragraphs, sentences, words and/or letters of a word.
Abstract: The security enhanced data platform is comprised of two primary subsystems and a host of supporting subsystems. The first primary subsystem is a document management system. A set of client side tools provides the user a way to specify classifications and compartments for selected areas of a document, and a way to save the document in the format required by the system in order to allow the system to enforce the rules and privileges dictated to the system. The second subsystem is a security enhanced database management system. In documents the system allows different user privilege requirements on the document as a whole as well as on pages, paragraphs, sentences, words, and/or letters of a word. A history of document changes is maintained to provide an audit trail after the fact of who did what changes, where those changes were made and when those changes were made.
TL;DR: In this paper, the user roles of the user within the tenant are determined based on static access control settings associated with the user, and user privileges are modified based on corresponding tenant privileges of the matched tenant role.
Abstract: In response to a request received from a client device to authorize a user for accessing a resource associated with a tenant, user roles of the user within the tenant are determined. For each of the user roles, user privileges the user is entitled within a capacity of the user role are determined based on static access control settings associated with the user. A tenant authorization profile associated with the tenant is accessed to determine tenant roles and tenant privileges for each tenant role. For each of the user roles that matches at least one of the tenant roles, at least one user privilege is modified based on corresponding tenant privileges of the matched tenant role. A token is generated based on the user roles and the modified user privileges and transmitted to the client device to determine whether the user is allowed to access the resource of the tenant.
TL;DR: In this paper, the authors present a system for determining whether to allow a user access to a home automation system to perform a specified home automation function based on the location of the user.
Abstract: Systems and methods for determining access to a home automation system may include receiving a command from a user to perform a home automation function, and determining a privilege for the user, which may be based on the location of the user. The methods may include comparing the command and the user privilege to an authorization list, where the authorization list defines system access to perform home automation functions based at least on individual commands and associated privileges. The methods may also include determining whether to allow the user access to the home automation system to perform the commanded home automation function.