05677851 is referenced by 200 patents and cites 11 patents.

A method of providing authoritative access control to computer networks that employs a distributed network directory using a static means of resolving object attributes is disclosed. The method employs the existing directories and an authentication procedure for each server. A first object that is under the physical control of the administrator of one partition of the distributed network directory requests access to a second object that is under the physical control of the administrator of another partition of the distributed network directory. The directory verifies that the access control list of the first object includes the second object. The access control list of the second object is then checked to verify that it includes a reference to the first object as an object that is permitted access to the second object. As a result, access is only granted in response to requests from objects that appear in the access control list of the second object. A method of synchronizing the access control lists based upon an authoritative access control list is also disclosed.

Title
Method and apparatus to secure digital directory object changes
Application Number
8/357467
Publication Number
5677851
Application Date
December 15, 1994
Publication Date
October 14, 1997
Inventor
Dale R Olds
Sandy
UT, US
DeeAnne Higley
Provo
UT, US
Randal Earl Childers
Orem
UT, US
Kevin Kingdon
Orem
UT, US
Agent
Dinsmore & Shohl
Assignee
Novell
UT, US
IPC
H04L 9/00
View Original Source