IP Library › Granted Patent US 12,730,919
Granted Patent B2
US 12,730,919 · App. 18/920,597 · Granted Sep 8, 2026

Controlling just in time access to a cluster

Inventor: Stephen McQuaid (San Francisco, CA)
Assignee: Salesforce, Inc.
G06F21/6218G06F9/4552G06F16/13G06F21/1076G06F2221/2125G06F2221/2141
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,730,919
App. No.
18/920,597
Granted
Sep 8, 2026
Kind
B2
Abstract

Examples include a system and computer-implemented method to receive a notification from an application programming interface (API) of creation of a just in time (JIT) grant, the JIT grant defining a request for a user to be authorized to access a cluster according to a JIT policy; determine if access to the cluster by the user is authorized according to the JIT policy; grant access to the user to the cluster when access is authorized according to the JIT policy; and send a notification to the API that access by the user to the cluster is granted.

Claims (49)

1 . A role-based access control system, comprising:

a processing device; and

a memory device,

the processing device configurable to cause:

processing an access control policy of just in time (JIT) access received via an interface, the access control policy specifying a role and an expiration time;

determining that access to a resource by a user is authorized according to the access control policy based, at least in part, on a role of the user;

granting, to the user, JIT access to the resource until expiration of the expiration time responsive to determining that access is authorized according to the access control policy, wherein granting, to the user, JIT access to the resource includes creating a role binding for the user; and

revoking access by the user to the resource in response to expiration of the expiration time, wherein revoking access includes deleting the role binding for the user.

2 . The role-based access control system of claim 1 , wherein the role binding grants permissions defined in a role to users within an identity provider group.

3 . The role-based access control system of claim 2 , wherein deleting the role binding comprises deleting an account associated with the role.

4 . The role-based access control system of claim 1 , the processing device further configurable to cause:

sending a security assertion markup language assertion to a service provider associated with the resource prior to access to the resource being granted.

5 . The role-based access control system of claim 1 , the processing device further configurable to cause:

associating a group with the access control policy; and

assigning the role to the group.

6 . The role-based access control system of claim 1 , the processing device further configurable to cause:

displaying, on a device of an authorized administrator, a user interface configurable to allow the authorized administrator to specify the expiration time.

7 . The role-based access control system of claim 1 , the processing device further configurable to cause:

associating a resource type with the access control policy, the resource type being an application.

8 . A computer-implemented method, comprising:

processing an access control policy of just in time (JIT) access received via an interface, the access control policy specifying a role and an expiration time;

determining that access to a resource by a user is authorized according to the access control policy based, at least in part, on a role of the user;

granting, to the user, JIT access to the resource until expiration of the expiration time responsive to determining that access is authorized according to the access control policy, wherein granting, to the user, JIT access to the resource includes creating a role binding for the user; and

revoking access by the user to the resource in response to expiration of the expiration time, wherein revoking access includes deleting the role binding for the user.

9 . The computer-implemented method of claim 8 , wherein the role binding grants permissions defined in a role to users within an identity provider group.

10 . The computer-implemented method of claim 9 , wherein deleting the role binding includes deleting an account associated with the role.

11 . The computer-implemented method of claim 8 , the method further comprising:

sending a security assertion markup language assertion to a service provider associated with the resource prior to access to the resource being granted.

12 . The computer-implemented method of claim 8 , the method further comprising:

associating a group with the access control policy; and

assigning the role to the group.

13 . The computer-implemented method of claim 8 , the method further comprising:

displaying, on a device of an authorized administrator, a user interface configurable to allow the authorized administrator to specify the expiration time.

14 . The computer-implemented method of claim 8 , the method further comprising:

associating a resource type with the access control policy, the resource type being an application.

15 . At least one tangible non-transitory machine-readable medium comprising a plurality of instructions that in response to being executed by a processor in a computing system, are configurable to cause:

processing an access control policy of just in time (JIT) access received via an interface, the access control policy specifying a role and an expiration time;

determining that access to a resource by a user is authorized according to the access control policy based, at least in part, on a role of the user;

granting, to the user, JIT access to the resource until expiration of the expiration time responsive to determining that access is authorized according to the access control policy, wherein granting, to the user, JIT access to the resource includes creating a role binding for the user; and

revoking access by the user to the resource in response to expiration of the expiration time, wherein revoking access includes deleting the role binding for the user.

16 . The at least one tangible non-transitory machine-readable medium of claim 15 , wherein the role binding grants permissions defined in a role to users within an identity provider group.

17 . The at least one tangible non-transitory machine-readable medium of claim 16 , wherein deleting the role binding includes deleting an account associated with the role.

18 . The at least one tangible non-transitory machine-readable medium of claim 15 , the plurality of instructions being further configured to cause:

sending a security assertion markup language assertion to a service provider associated with the resource prior to access to the resource being granted.

19 . The at least one tangible non-transitory machine-readable medium of claim 15 , the plurality of instructions being further configured to cause:

associating a group with the access control policy; and

assigning the role to the group.

20 . The at least one tangible non-transitory machine-readable medium of claim 15 , the plurality of instructions being further configured to cause:

displaying, on a device of an authorized administrator, a user interface configurable to allow the authorized administrator to specify the expiration time.

Assignments (2)
CHANGE OF NAME Recorded Aug 4, 2026
From: SALESFORCE.COM, INC.
To: SALESFORCE, INC.
Reel/Frame 076118/0548 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 30, 2025
From: MCQUAID, STEPHEN
To: SALESFORCE.COM, INC.
Reel/Frame 070059/0543 →
Continuity (3)
Continuation 17936294 · Sep 28, 2022
Continuation 16906755 · Jun 19, 2020
Related Publication 20250148112A1 · May 8, 2025
References Cited (9)
US 11397794B1 · Baghani · 2022 [cited by applicant]
US 20150271200A1 · Brady · 2015 [cited by examiner]
US 20200314109A1 · Subhash · 2020 [cited by applicant]
US 20200319907A1 · Jain · 2020 [cited by examiner]
Office Action (Non-Final Rejection) dated Nov. 9, 2023 for U.S. Appl. No. 17/936,294 (pp. 1-11). [cited by applicant]
Office Action (Final Rejection) dated Mar. 28, 2024 for U.S. Appl. No. 17/936,294 (pp. 1-12). [cited by applicant]
Office Action (Notice of Allowance and Fees Due (PTOL-85)) dated Jul. 25, 2024 for U.S. Appl. No. 17/936,294 (pp. 1-8). [cited by applicant]
Office Action (Notice of Allowance and Fees Due (PTOL-85)) dated Aug. 5, 2024 for U.S. Appl. No. 17/936,294 (pp. 1-3). [cited by applicant]
U.S. Appl. No. 19/042,452, USPTO e-Office Action: CTNF—Non-Final Rejection, Jun. 3, 2026, 7 pages. [cited by applicant]