We present a paradigm for access control to typed objects logically connected to form a hierarchy, whereby each object has a single parent, and may have children. Protection domains are divided into t
Data attributes available from the Identity and Access Management database. These data are available by request to authorized users ( http://iam.harvard.edu/files/iam/files/cas-saml-spusagerequest-for