IP Library Patent Application 13559202
Patent Application
App. No. 13/559,202

In-Memory Database Interface To Respect Assigned Authorization Profiles

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
13/559,202
Abstract

A system, method, and a computer program product for checking in-memory authorization profiles are disclosed. An authorization profile of a user in an enterprise resource planning system can be determined. An access to an in-memory database system can be requested based on the determined authorization profile. Based on the access request, an authorization check of the determined authorization profile of the user can be performed to determine whether the user can access the in-memory database system using the determined authorization profile. An access to the in-memory database system to the user can be granted based on the performed authorization check.

Claims (48)

1 . A computer-implemented method, comprising:

determining an authorization profile of a user in an enterprise resource planning system;

requesting, based on the determined authorization profile, an access to an in-memory database system;

generating an authorization interface separate from the enterprise resource planning system for obtaining the determined authorization profiled of the user in the enterprise resource planning system;

performing, via the authorization interface and based on the access request, an authorization check of the determined authorization profile of the user to determine whether the user can access the in-memory database system using the determined authorization profile; and

granting, based on the performed authorization check, an access to the in-memory database system to the user;

wherein the at least one of the determining, the requesting, the performing, and the granting is performed on at least one processor.

2 . The method according to claim 1 , wherein the authorization profile of the user is associated with at least one restriction, wherein the at least one restriction limits access of the user to the at least one of the enterprise resource planning system and the in-memory database system.

3 . The method according to claim 2 , wherein the at least one restriction is associated with at least one of the following: a business process, a time, user authorization role in the enterprise resource planning system, an application being called by the user in the enterprise resource planning system, and the user.

4 . The method according to claim 2 , further comprising:

generating a checklist of restrictions for limiting access of the user to the in-memory database system; and

comparing the determined user authorization profile with the restrictions on the generated checklist to determine whether the user can be granted access to the in-memory database system based on the determined user authorization profile.

5 . (canceled)

6 . The method according to claim 1 , wherein the generating the authorization interface further comprises:

generating an in-memory database view for checking the determined user authorization profile to determine whether to grant access to the user based on the determined user authorization profile.

7 . The method according to claim 1 , wherein the in-memory database system is high performance analytic appliance system.

8 . A non-transitory computer program product storing instructions that, when executed by at least one programmable processor, cause the at least one programmable processor to perform operations comprising:

determining an authorization profile of a user in an enterprise resource planning system;

requesting, based on the determined authorization profile, an access to an in-memory database system;

generating an authorization interface separate from the enterprise resource planning system for obtaining the determined authorization profiled of the user in the enterprise resource planning system;

performing, via the authorization interface and based on the access request, an authorization check of the determined authorization profile of the user to determine whether the user can access the in-memory database system using the determined authorization profile; and

granting, based on the performed authorization check, an access to the in-memory database system to the user.

9 . The computer program product according to claim 8 , wherein the authorization profile of the user is associated with at least one restriction, wherein the at least one restriction limits access of the user to the at least one of the enterprise resource planning system and the in-memory database system.

10 . The computer program product according to claim 9 , wherein the at least one restriction is associated with at least one of the following: a business process, a time, user authorization role in the enterprise resource planning system, an application being called by the user in the enterprise resource planning system, and the user.

11 . The computer program product according to claim 9 , wherein the performing further comprises

generating a checklist of restrictions for limiting access of the user to the in-memory database system; and

comparing the determined user authorization profile with the restrictions on the generated checklist to determine whether the user can be granted access to the in-memory database system based on the determined user authorization profile.

12 . The computer program product according to claim 8 , wherein the performing further comprises

generating an authorization interface for obtaining the determined authorization profiled of the user in the enterprise resource planning system.

13 . The computer program product according to claim 8 , wherein the generating the authorization interface further comprises

generating an in-memory database view for checking the determined user authorization profile to determine whether to grant access to the user based on the determined user authorization profile.

14 . The computer program product according to claim 8 , wherein the in-memory database system is high performance analytic appliance system.

15 . A system comprising:

at least one programmable processor; and

a machine-readable medium storing instructions that, when executed by the at least one programmable processor, cause the at least one programmable processor to perform operations comprising:

determining an authorization profile of a user in an enterprise resource planning system;

generating an authorization interface separate from the enterprise resource planning system for obtaining the determined authorization profiled of the user in the enterprise resource planning system;

requesting, via the authorization interface eand based on the determined authorization profile, an access to an in-memory database system;

performing, based on the access request, an authorization check of the determined authorization profile of the user to determine whether the user can access the in-memory database system using the determined authorization profile; and

granting, based on the performed authorization check, an access to the in-memory database system to the user.

16 . The system according to claim 15 , wherein the authorization profile of the user is associated with at least one restriction, wherein the at least one restriction limits access of the user to the at least one of the enterprise resource planning system and the in-memory database system.

17 . The system according to claim 16 , wherein the at least one restriction is associated with at least one of the following: a business process, a time, user authorization role in the enterprise resource planning system, an application being called by the user in the enterprise resource planning system, and the user.

18 . The system according to claim 16 , wherein the performing further comprises

generating a checklist of restrictions for limiting access of the user to the in-memory database system; and

comparing the determined user authorization profile with the restrictions on the generated checklist to determine whether the user can be granted access to the in-memory database system based on the determined user authorization profile.

19 . (canceled)

20 . The system according to claim 15 , wherein the generating the authorization interface further comprises

generating an in-memory database view for checking the determined user authorization profile to determine whether to grant access to the user based on the determined user authorization profile.

Assignments (2)
CHANGE OF NAME Recorded Aug 26, 2014
From: SAP AG
To: SAP SE
Reel/Frame 033625/0223 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 27, 2012
From: HUMPRECHT, HANS-CHRISTIAN, MR.
To: SAP AG
Reel/Frame 028656/0350 →