Reference is made to U.S. patent application Ser. No. 12/673,691, filed Feb. 16, 2010, and entitled “ENTERPRISE LEVEL DATA MANAGEMENT”, which is a National Phase Application of PCT\IL2010\000069 filed Jan. 27, 2010 and entitled “ENTERPRISE LEVEL DATA MANAGEMENT”, the disclosure of which is hereby incorporated by reference and priority of which is hereby claimed pursuant to 37 CFR 1.78(a) (1) and (2)(i).
Reference is also made to the following patents and patent applications, owned by assignee, the disclosures of which are hereby incorporated by reference:
U.S. Pat. Nos. 7,555,482 and 7,606,801;
U.S. Published Patent Application Nos. 2007/0244899, 2008/0271157, 2009/0100058, 2009/0119298 and 2009/0265780; and
U.S. patent application Ser. Nos. 12/772,450 and 12/814,807.
The present invention relates to automatic resource ownership assignment systems and methods.
The following patent publications are believed to represent the current state of the art:
U.S. Pat. Nos. 5,465,387; 5,899,991; 6,338,082; 6,393,468; 6,928,439; 7,031,984; 7,068,592; 7,403,925; 7,421,740; 7,555,482, 7,606,801 and 7,743,420; and
U.S. Published Patent Application Nos.: 2003/0051026; 2004/0249847; 2005/0108206; 2005/0203881; 2005/0086529; 2006/0064313; 2006/0184530; 2006/0184459; 2007/0203872; 2007/0244899; 2008/0271157; 2009/0100058; 2009/0119298 and 2009/0265780.
The present invention provides improved systems and methodologies for automatic resource ownership assignment.
There is thus provided in accordance with a preferred embodiment of the present invention an automatic resource ownership assignment system, the system including resource ownership indicators definition functionality operative to allow an operator of the system to define resource ownership indicators, automatic resource ownership recommendation functionality operative to provide, to at least one user of the system, a recommendation to assign ownership of at least one resource to a potential owner, based on the resource ownership indicators, and automatic resource ownership assignment functionality which, responsive to predetermined at least partial approval of the at least one recommendation by the at least one user and approval of the at least one recommendation by the potential owner, is operative to automatically assign ownership of the at least one resource to the potential owner.
The term “predetermined at least partial approval” is used throughout to mean approval of a recommendation by a single user is a case where approval of the recommendation is requested from the single user, or approval of the recommendation by a predetermined portion of users in a case where approval of the recommendation is requested from multiple users.
In accordance with a preferred embodiment of the present invention, the ownership of at least one resource includes responsibility for managing access permissions to the resource.
There is also provided in accordance with another preferred embodiment of the present invention an automatic folder ownership assignment system, the system including folder ownership indicators definition functionality operative to allow an administrator of the system to define folder ownership indicators, automatic folder ownership recommendation functionality operative to provide, to at least one user of the system, a recommendation to assign ownership of at least one folder to a potential owner, based on the folder ownership indicators, and automatic folder ownership assignment functionality which, responsive to predetermined at least partial approval of the at least one recommendation by the at least one user and approval of the at least one recommendation by the potential owner, is operative to assign ownership of the at least one folder to the potential owner.
In accordance with a preferred embodiment of the present invention, the ownership of at least one folder includes responsibility for managing access permissions to the folder. Preferably, the access permissions include at least one of read permissions to at least one file within the folder, write permissions to at least one file within the folder, permissions to create at least one file in the folder and permissions to delete at least one file in the folder.
Additionally, managing access permissions to the folder is achieved by at least one of manually setting user access permissions to the folder, and configuring automatic rules for setting user access permissions to the folder.
Preferably, the system resides on a computer server. Preferably, the computer server is connected to an enterprise level network. Preferably, the system includes a database. Preferably, the database includes access permissions information for at least some of the folders in the network. Preferably, the database includes actual access history information for at least some of the folders in the network. Preferably, the database includes metadata relating to at least some of the folders in the network. Preferably, the metadata includes at least one of creation date and size.
Preferably, the database also includes folder ownership information for all folders in the network. Preferably, the folder ownership indicators include at least one of actual access to the at least one folder, access permissions to the at least one folder and the identity of a creator of the at least one folder.
Additionally, the automatic folder ownership assignment functionality, responsive to rejection of the at least one recommendation by the at least one user or by the potential owner, and responsive to receiving an alternative recommendation from the at least one user or from the potential owner to assign ownership of the at least one folder to an alternative owner, is operative to automatically assign ownership of the at least one folder to the alternative owner.
The term “rejection” is used throughout to mean rejection of a recommendation by a single user is a case where approval of the recommendation is requested from the single user, or rejection of the recommendation by a predetermined portion of users in a case where approval of the recommendation is requested from multiple users.
There is further provided in accordance with yet another preferred embodiment of the present invention an automatic library ownership assignment system, the system including library ownership indicators definition functionality operative to allow an operator of the system to define library ownership indicators, automatic library ownership recommendation functionality operative to provide, to at least one user of a library, a recommendation to assign ownership of the library to a potential owner, based on the library ownership indicators, and automatic library ownership assignment functionality which, responsive to predetermined at least partial approval of the at least one recommendation by the at least one user and approval of the at least one recommendation by the potential owner, is operative to automatically assign ownership of the library to the potential owner.
There is yet further provided in accordance with still another preferred embodiment of the present invention a method for automatic resource ownership assignment, the method including defining resource ownership indicators, automatically providing, to at least one individual, a recommendation to assign ownership of at least one resource to a potential owner, based on the resource ownership indicators, and responsive to predetermined at least partial approval of the at least one recommendation by the at least one individual and approval of the at least one recommendation by the potential owner, to automatically assign ownership of the at least one resource to the potential owner.
In accordance with a preferred embodiment of the present invention, the ownership of at least one resource includes responsibility for managing access permissions to the resource.
There is also provided in accordance with another preferred embodiment of the present invention a method for automatic folder ownership assignment, the method including defining folder ownership indicators, automatically providing, to at least one individual, a recommendation to assign ownership of at least one folder to a potential owner, based on the folder ownership indicators, and responsive to predetermined at least partial approval of the at least one recommendation by the at least one individual and approval of the at least one recommendation by the potential owner, to automatically assign ownership of the at least one folder to the potential owner.
In accordance with a preferred embodiment of the present invention, the ownership of at least one folder includes responsibility for managing access permissions to the folder. Preferably, the access permissions include at least one of read permissions to at least one file within the folder, write permissions to at least one file within the folder, permissions to create at least one file in the folder and permissions to delete at least one file in the folder.
Additionally, managing access permissions to the folder is achieved by at least one of manually setting user access permissions to the folder, and configuring automatic rules for setting user access permissions to the folder. Preferably, the folder ownership indicators include at least one of actual access to the at least one folder, access permissions to the at least one folder and the identity of a creator of the at least one folder.
Additionally, responsive to rejection of the at least one recommendation by the at least one individual or by the potential owner, and responsive to receiving an alternative recommendation from the at least one individual or from the potential owner to assign ownership of the at least one folder to an alternative owner, the method also includes assigning ownership of the at least one folder to the alternative owner.
There is further provided in accordance with yet another preferred embodiment of the present invention a method for automatic library ownership assignment, the method including defining library ownership indicators, automatically providing, to at least one user of a library, a recommendation to assign ownership of the library to a potential owner, based on the library ownership indicators, and responsive to predetermined at least partial approval of the at least one recommendation by the at least one user and approval of the at least one recommendation by the potential owner, to automatically assign ownership of the library to the potential owner.
The present invention will be understood and appreciated more fully from the following detailed description, taken in conjunction with the drawings in which:
Reference is now made to
The term “ownership” is used throughout to designate authority and accountability within an enterprise as distinct to legal ownership in the normal sense of the word. “Ownership” of a data element, an organization function, a resource, whether IT related or not, a service, a workflow or any other element in an enterprise designates authority and accountability with respect thereto within the enterprise. The definitions of “owner” and “owning” are of corresponding meaning.
The automatic folder ownership assignment system of
The term “predetermined at least partial approval” is used throughout to mean approval of a recommendation by a single user is a case where approval of the recommendation is requested from the single user, or approval of the recommendation by a predetermined portion of users in a case where approval of the recommendation is requested from multiple users.
The term “rejection” is used throughout to mean rejection of the recommendation by a single user is a case where approval of the recommendation is requested from the single user, or rejection of the recommendation by a predetermined portion of users in a case where approval of the recommendation is requested from multiple users.
The owner of a folder is responsible, for example, for managing access permissions to the folder. Such access permissions may include read or write permissions to a file within the folder, and modification permissions to a folder (e.g. permissions to create or delete files). Management of access permissions by the owner may be achieved, for example, by manually setting user access permissions to the folder, and by configuring automatic rules for setting user access permissions to the folder.
As shown in
As also shown in
Turning now to
The system then requests predetermined at least partial approval of the folder ownership recommendation for the HR folder from at least some of the users having access permissions to the HR folder, typically from users who are most active in accessing the HR folder. As seen in
As shown in
Upon receiving the approval of the ownership recommendation from Tom, the system assigns ownership of the HR folder to Tom, as shown in
Reference is now made to
The automatic resource ownership assignment system of
Referring now specifically to
As shown in
Turning now to
The system then requests predetermined at least partial approval of the library ownership recommendation from at least some of the users having access rights to the library, typically from users who are most active in accessing the library. As seen in
As shown in
Upon receiving the approval of the ownership recommendation from Tom, the system assigns ownership of the library to Tom, as shown in
It will be appreciated by persons skilled in the art that the present invention is not limited by what has been particularly shown and described hereinabove. Rather the scope of the present invention includes both combinations and subcombinations of the various features described hereinabove as well as modifications thereof which would occur to persons skilled in the art upon reading the foregoing description and which are not in the prior art.
Number | Date | Country | Kind |
---|---|---|---|
PCT/IL2010/000069 | Jan 2010 | IL | national |
Number | Name | Date | Kind |
---|---|---|---|
5465387 | Mukherjee | Nov 1995 | A |
5729734 | Parker et al. | Mar 1998 | A |
5889952 | Hunnicutt et al. | Mar 1999 | A |
5899991 | Karch | May 1999 | A |
6308173 | Glasser et al. | Oct 2001 | B1 |
6338082 | Schneider | Jan 2002 | B1 |
6393468 | McGee | May 2002 | B1 |
6772350 | Belani et al. | Aug 2004 | B1 |
6928439 | Satoh | Aug 2005 | B2 |
7017183 | Frey et al. | Mar 2006 | B1 |
7031984 | Kawamura et al. | Apr 2006 | B2 |
7068592 | Duvaut et al. | Jun 2006 | B1 |
7305562 | Bianco et al. | Dec 2007 | B1 |
7403925 | Schlesinger et al. | Jul 2008 | B2 |
7421740 | Fey et al. | Sep 2008 | B2 |
7555482 | Korkus | Jun 2009 | B2 |
7606801 | Faitelson | Oct 2009 | B2 |
7716240 | Lim | May 2010 | B2 |
7743420 | Shulman et al. | Jun 2010 | B2 |
8533787 | Faitelson et al. | Sep 2013 | B2 |
8805884 | Faitelson et al. | Aug 2014 | B2 |
8875246 | Faitelson et al. | Oct 2014 | B2 |
8875248 | Faitelson et al. | Oct 2014 | B2 |
20030048301 | Menninger | Mar 2003 | A1 |
20030051026 | Carter et al. | Mar 2003 | A1 |
20030231207 | Huang | Dec 2003 | A1 |
20040030915 | Sameshima et al. | Feb 2004 | A1 |
20040186809 | Schlesinger et al. | Sep 2004 | A1 |
20040249847 | Wang et al. | Dec 2004 | A1 |
20040254919 | Giuseppini | Dec 2004 | A1 |
20050086268 | Rogers | Apr 2005 | A1 |
20050086529 | Buchsbaum | Apr 2005 | A1 |
20050108206 | Lam et al. | May 2005 | A1 |
20050120054 | Shulman | Jun 2005 | A1 |
20050203881 | Sakamoto et al. | Sep 2005 | A1 |
20050246762 | Girouard et al. | Nov 2005 | A1 |
20050278334 | Fey et al. | Dec 2005 | A1 |
20060064313 | Steinbarth et al. | Mar 2006 | A1 |
20060184459 | Parida | Aug 2006 | A1 |
20060184530 | Song et al. | Aug 2006 | A1 |
20060277184 | Faitelson et al. | Dec 2006 | A1 |
20070027872 | Johnson et al. | Feb 2007 | A1 |
20070061487 | Moore et al. | Mar 2007 | A1 |
20070073698 | Kanayama et al. | Mar 2007 | A1 |
20070094265 | Korkus | Apr 2007 | A1 |
20070101387 | Hua et al. | May 2007 | A1 |
20070112743 | Giampaolo et al. | May 2007 | A1 |
20070143859 | Ogi et al. | Jun 2007 | A1 |
20070156659 | Lim | Jul 2007 | A1 |
20070156693 | Soin et al. | Jul 2007 | A1 |
20070203872 | Flinn et al. | Aug 2007 | A1 |
20070244899 | Faitelson et al. | Oct 2007 | A1 |
20070266006 | Buss | Nov 2007 | A1 |
20070282855 | Chen et al. | Dec 2007 | A1 |
20080034402 | Botz et al. | Feb 2008 | A1 |
20080162707 | Beck et al. | Jul 2008 | A1 |
20080172720 | Botz et al. | Jul 2008 | A1 |
20080270462 | Thomsen | Oct 2008 | A1 |
20080271157 | Faitelson et al. | Oct 2008 | A1 |
20090100058 | Faitelson et al. | Apr 2009 | A1 |
20090119298 | Faitelson et al. | May 2009 | A1 |
20090150981 | Amies et al. | Jun 2009 | A1 |
20090198892 | Alvarez et al. | Aug 2009 | A1 |
20090249446 | Jenkins et al. | Oct 2009 | A1 |
20090265780 | Korkus et al. | Oct 2009 | A1 |
20090320088 | Gill et al. | Dec 2009 | A1 |
20100037324 | Grant et al. | Feb 2010 | A1 |
20100070881 | Hanson et al. | Mar 2010 | A1 |
20100262625 | Pittenger | Oct 2010 | A1 |
20110010758 | Faitelson et al. | Jan 2011 | A1 |
20110060916 | Faitelson et al. | Mar 2011 | A1 |
20110061111 | Faitelson et al. | Mar 2011 | A1 |
20110184989 | Faitelson et al. | Jul 2011 | A1 |
20120221550 | Korkus et al. | Aug 2012 | A1 |
20120291100 | Faitelson et al. | Nov 2012 | A1 |
20130017314 | Yang et al. | Jan 2013 | A1 |
20130117315 | Faitelson et al. | May 2013 | A1 |
20140006453 | Faitelson et al. | Jan 2014 | A1 |
20150012572 | Faitelson et al. | Jan 2015 | A1 |
20150012573 | Faitelson et al. | Jan 2015 | A1 |
Number | Date | Country |
---|---|---|
1588889 | Mar 2005 | CN |
1248178 | Oct 2002 | EP |
2005-267237 | Sep 2005 | JP |
2010-287171 | Dec 2010 | JP |
2011030324 | Mar 2011 | WO |
Entry |
---|
Sahadeb DE, et al; “Secure Access Control in a Multi-user Geodatabase” available on the internet at the URL http://www10.giscafe.com.2005; 10 pages. |
Varonis; “Entitlement Reviews: A Practitioner's Guide”, 2007, 16 pages. |
Findutils-GNU Project-Free Software Foundation (FSF), 3 pages, Nov. 2006. |
S.R. Kleiman; “Vnodes: An Architecture for Multiple File System Types in Sun UNIX”, USENIX Association: Summer Conference Proceedings, Atlanta 1986, 10 pages. |
Sara C. Madeira, et al; “Biclustering Algorithms for Biological Data Analysis: A Survey”, IEEE Transactions on Computational Biology and Bioinformatics, vol. 1, No. 1, Jan.-Mar. 2004, 22 pages; http://www.cs.princeton.edu/courses/archive/spr05/cos598E/bib/bicluster.pdf. |
Sara C. Madeira; Clustering, Fuzzy Clustering and Biclustering: An Overview; pp. 31-53, Jun. 27, 2003. |
Edgar Weippl, et al; “Content-based Management of Document Access Control” 14th International Conference on Applications of Prolog (INAP), 2001, 9 pages. |
Alex Woodie; “Varonis Prevents Unauthorized Access to Unstructured Data”, Four Hundred Stuff, vol. 7, No. 29; Jul. 31, 2007; 4 pages. |
Genunix; “Writing Filesystems—VFS and Vnode Interfaces”, Oct. 2007, 5 pages. |
Varonis; The Business Case for Data Governance; dated Mar. 27, 2007; 8 pages. |
DatAdvantage User Guide by Varonis, Version 1.0, Aug. 30, 2005, 71 pages. |
DatAdvantage User Guide by Varonis, Version 2.0, Aug. 24, 2006, 118 pages. |
DatAdvantage User Guide by Varonis, Version 2.5, Nov. 27, 2006, 124 pages. |
DatAdvantage User Guide by Varonis, Version 2.6, Dec. 15, 2006, 127 pages. |
DatAdvantage User Guide by Varonis, Version 2.7, Feb. 6, 2007, 131 pages. |
DatAdvantage User Guide by Varonis, Version 3.0, Jun. 20, 2007, 153 pages. |
A List of Database Tables in DatAdvantage 2.7, Feb. 6, 2007 1 page by Varonis. |
A List of Database Tables in DatAdvantage 3.0, Jun. 20, 2007 1 page by Varonis. |
Varonis; “Accelerating Audits with Automation: Understanding Who's Accessing Your Unstructured Data” Oct. 8, 2007; 7 pages. |
German Office Action dated Sep. 14, 2012 which issued during the prosecution of German Patent Application No. 11 2006 001 378.5. |
International Preliminary Report on Patentability dated Jul. 30, 2013; PCT/IL2011/000902. |
International Preliminary Report on Patentability dated Jul. 30, 2013; PCT/IL2011/000903. |
International Search Report and Written Opinion dated May 23, 2011; PCT/IL11/00065. |
International Search Report and Written Opinion dated May 20, 2010; PCT/IL10/00069. |
International Search Report and Written Opinion dated May 24, 2011; PCT/IL11/00077. |
International Search Report and Written Opinion dated Nov. 15, 2011; PCT/IL11/00408. |
International Search Report and Written Opinion dated Apr. 13, 2012; PCT/IL11/00902. |
U.S. Appl. No. 60/688,486, filed Jun. 7, 2005. |
U.S. Appl. No. 61/240,726, filed Sep. 9, 2009. |
USPTO NFOA mailed Feb. 12, 2008 in connection with U.S. Appl. No. 11/258,256. |
USPTO FOA dated Aug. 1, 2008 in connection with U.S. Appl. No. 11/258,256. |
USPTO NFOA dated Oct. 31, 2008 in connection with U.S. Appl. No. 11/635,736. |
USPTO NFOA dated Dec. 14, 2010 in connection with U.S. Appl. No. 11/786,522. |
USPTO NFOA dated Jul. 9, 2010 in connection with U.S. Appl. No. 11/789,884. |
USPTO FOA dated Dec. 14, 2010 in connection with U.S. Appl. No. 11/789,884. |
USPTO NFOA dated Sep. 16, 2010 in connection with U.S. Appl. No. 11/871,028. |
USPTO FOA dated Apr. 28, 2011 in connection with U.S. Appl. No. 11/871,028. |
USPTO NFOA dated Sep. 14, 2012 in connection with U.S. Appl. No. 12/861,967. |
USPTO NFOA dated Jul. 11, 2012 in connection with U.S. Appl. No. 13/014,762. |
USPTO FOA dated Feb. 14, 2013 in connection with U.S. Appl. No. 13/014,762. |
USPTO NOA dated Aug. 30, 2013 in connection with U.S. Appl. No. 13/014,762. |
USPTO NFOA dated Dec. 16, 2013 in connection with U.S. Appl. No. 13/014,762. |
USPTO NOA dated Mar. 28, 2014 in connection with U.S. Appl. No. 13/014,762. |
USPTO RR dated Nov. 21, 2012 in connection with U.S. Appl. No. 13/106,023. |
USPTO NFOA dated Mar. 1, 2013 in connection with U.S. Appl. No. 13/106,023. |
USPTO NOA dated May 15, 2013 in connection with U.S. Appl. No. 13/106,023. |
USPTO FOA dated Mar. 25, 2013 in connection with U.S. Appl. No. 13/303,826. |
USPTO FOA dated Sep. 6, 2013 in connection with U.S. Appl. No. 13/378,115. |
USPTO NFOA dated May 8, 2014 in connection with U.S. Appl. No. 13/724,028. |
USPTO NOA dated Aug. 19, 2014 in connection with U.S. Appl. No. 13/724,028. |
USPTO NFOA dated Feb. 6, 2015 in connection with U.S. Appl. No. 13/724,121. |
USPTO NOA dated May 22, 2015 in connection with U.S. Appl. No. 13/724,121. |
USPTO NFOA dated May 14, 2014 in connection with U.S. Appl. No. 14/018,835. |
USPTO NOA dated Aug. 21, 2014 in connection with U.S. Appl. No. 14/018,835. |
USPTO NFOA dated Jun. 4, 2015 in connection with U.S. Appl. No. 14/498,189. |
USPTO NFOA dated Jun. 5, 2015 in connection with U.S. Appl. No. 14/498,373. |
Number | Date | Country | |
---|---|---|---|
20150186392 A1 | Jul 2015 | US |
Number | Date | Country | |
---|---|---|---|
Parent | 13014762 | Jan 2011 | US |
Child | 14456373 | US |