A system that generates a per user abstraction of a store from a
connection point. Filtering a view set of a hierarchically secured
containment hierarchy based on the access permissions of the principal is
one of the novel features of the invention. The invention can offer a
collection of primitives that can operate on this aggregation that span
multiple container hierarchies with potentially heterogeneous security
descriptors. The model can reduce the necessity to traverse the container
hierarchy to discover all the accessible items in a domain.