IP Library Granted Patent US 7,720,894
Granted Patent B2
US 7,720,894 · App. 11/519,377 · Granted May 18, 2010

Internal security system for a relational database system

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,720,894
App. No.
11/519,377
Granted
May 18, 2010
Kind
B2
Abstract

An internal security method for use with a relational database system is disclosed. The method is incorporated into a database system such that there is no need for security coding be layered on top of the system application software to prevent unauthorized access to restricted database information. The method of the present invention includes at least two embodiments and at least one of the embodiments has a “down the tree view” structure.

Claims (11)

1. An internal security method for a relational database system, comprising one or more processors implementing the steps of:

(a) determining which data information from the total amount of data information stored in system databases is restricted data information that shall not be accessible by each and every 1 to N system users, where N is an integer greater than 1;

(b) determining for each individual specific system user the restricted data information that such a system user shall have access;

(c) creating at least one relational access table with each specific system user having at least one record in the relational access table and using a foreign key in the table created at step (c) that is linked to a primary key associated with a specific system user's table of the relational database system for controlling that specific system user's access to the restricted data information that was determined at step (b) and preventing downstream and upstream access to unauthorized restricted data information through the use of the foreign key and primary key link, such that a first specific system user will have one or more records in the relational access table that will permit the first specific system user's access to restricted data information that is determined for the first specific system user to be joined with a second specific system user's access to restricted data information that is determined for the second specific system user, and the specific second system user will have one or more records in the relational access table that will permit the second specific system user's access to restricted data information that is determined for the second specific system user; and

(d) each specific system user accessing restricted data information stored in the system databases according to the relational access table created at step (c) and specific one way joining links to restricted data information stored in the system databases of other system users according to step (c).

2. The method as recited in claim 1 , wherein the relational database is a structured query language database.

3. The method as recited in claim 1 , wherein each relational access table has a foreign key that relates to a primary key of only one specific system user.

4. The method as recited in claim 1 , wherein each relational access table created at step (c) may have access to additional restricted data information added to it by updating the relational access table after it is created.

5. The method as recited in claim 1 , wherein each relational access table created at step (c) may have access to certain restricted data information deleted from it by updating the relational access table after it is created.

6. The method as recited in claim 1 , wherein the relational database system that incorporates the internal security method includes a star schema configuration.

7. The method as recited in claim 6 , wherein the relational database system that incorporates the internal security method includes a full star schema configuration.

Assignments (5)
RELEASE OF SECURITY INTEREST Recorded May 29, 2020
From: BANK OF AMERICA, N.A.
To: LAWSON SOFTWARE, INC.; INFOR GLOBAL SOLUTIONS (MICHIGAN), INC.; INFOR (US), INC.; GT NEXUS, INC.
Reel/Frame 053314/0436 →
RELEASE OF SECURITY INTEREST Recorded Mar 5, 2019
From: WILMINGTON TRUST, NATIONAL ASSOCIATION
To: INFOR (US), INC.
Reel/Frame 048510/0349 →
CORRECTIVE ASSIGNMENT TO REMOVE THE INCORRECT PATENT NUMBER 6617869 AND REPLACE PATENT NUMBER 6617969 PREVIOUSLY RECORDED AT REEL: 036500 FRAME: 0896. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT. Recorded Sep 10, 2015
From: INFOR (US), INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 036585/0280 →
SECURITY AGREEMENT Recorded Aug 27, 2015
From: INFOR (US), INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 036500/0896 →
SECURITY AGREEMENT Recorded Apr 19, 2012
From: INFOR GLOBAL SOLUTIONS (MICHIGAN), INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 028078/0964 →