Secure gateway communication systems and methods

A computer security architecture applies selected rules from among a set of rules defining one or more security policies to a given set of security context parameters to produce security verdicts, each representing whether a certain action requested by a subject entity is permissible. Each security...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Doukhvalov, Andrey P, Dyakin, Pavel V, Kulagin, Dmitry A, Lungu, Sergey B, Moiseev, Stanislav V
Format: Patent
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page
container_issue
container_start_page
container_title
container_volume
creator Doukhvalov, Andrey P
Dyakin, Pavel V
Kulagin, Dmitry A
Lungu, Sergey B
Moiseev, Stanislav V
description A computer security architecture applies selected rules from among a set of rules defining one or more security policies to a given set of security context parameters to produce security verdicts, each representing whether a certain action requested by a subject entity is permissible. Each security policy is associated with a corresponding communication interface. A plurality of gateway engines are each associated with at least one of the subject entities and dedicated to interfacing with the security server. Each of the gateway engines carries out monitoring of requested actions by the associated subject entity and, for each requested action, identifies a security context. A security policy is determined for the requested action based on a corresponding security context, and a security verdict is obtained via a communication interface corresponding to the applicable security policy.
format Patent
fullrecord <record><control><sourceid>epo_EVB</sourceid><recordid>TN_cdi_epo_espacenet_US10361998B2</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>US10361998B2</sourcerecordid><originalsourceid>FETCH-epo_espacenet_US10361998B23</originalsourceid><addsrcrecordid>eNrjZDAITk0uLUpVSE8sSS1PrFRIzs_NLc3LTE4syczPUyiuLC5JzS1WSMxLUchNLcnITynmYWBNS8wpTuWF0twMim6uIc4euqkF-fGpxQWJyal5qSXxocGGBsZmhpaWFk5GxsSoAQCdbCwD</addsrcrecordid><sourcetype>Open Access Repository</sourcetype><iscdi>true</iscdi><recordtype>patent</recordtype></control><display><type>patent</type><title>Secure gateway communication systems and methods</title><source>esp@cenet</source><creator>Doukhvalov, Andrey P ; Dyakin, Pavel V ; Kulagin, Dmitry A ; Lungu, Sergey B ; Moiseev, Stanislav V</creator><creatorcontrib>Doukhvalov, Andrey P ; Dyakin, Pavel V ; Kulagin, Dmitry A ; Lungu, Sergey B ; Moiseev, Stanislav V</creatorcontrib><description>A computer security architecture applies selected rules from among a set of rules defining one or more security policies to a given set of security context parameters to produce security verdicts, each representing whether a certain action requested by a subject entity is permissible. Each security policy is associated with a corresponding communication interface. A plurality of gateway engines are each associated with at least one of the subject entities and dedicated to interfacing with the security server. Each of the gateway engines carries out monitoring of requested actions by the associated subject entity and, for each requested action, identifies a security context. A security policy is determined for the requested action based on a corresponding security context, and a security verdict is obtained via a communication interface corresponding to the applicable security policy.</description><language>eng</language><subject>CALCULATING ; COMPUTING ; COUNTING ; ELECTRIC COMMUNICATION TECHNIQUE ; ELECTRIC DIGITAL DATA PROCESSING ; ELECTRICITY ; PHYSICS ; TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><creationdate>2019</creationdate><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktohtml>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20190723&amp;DB=EPODOC&amp;CC=US&amp;NR=10361998B2$$EHTML$$P50$$Gepo$$Hfree_for_read</linktohtml><link.rule.ids>230,308,776,881,25542,76290</link.rule.ids><linktorsrc>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20190723&amp;DB=EPODOC&amp;CC=US&amp;NR=10361998B2$$EView_record_in_European_Patent_Office$$FView_record_in_$$GEuropean_Patent_Office$$Hfree_for_read</linktorsrc></links><search><creatorcontrib>Doukhvalov, Andrey P</creatorcontrib><creatorcontrib>Dyakin, Pavel V</creatorcontrib><creatorcontrib>Kulagin, Dmitry A</creatorcontrib><creatorcontrib>Lungu, Sergey B</creatorcontrib><creatorcontrib>Moiseev, Stanislav V</creatorcontrib><title>Secure gateway communication systems and methods</title><description>A computer security architecture applies selected rules from among a set of rules defining one or more security policies to a given set of security context parameters to produce security verdicts, each representing whether a certain action requested by a subject entity is permissible. Each security policy is associated with a corresponding communication interface. A plurality of gateway engines are each associated with at least one of the subject entities and dedicated to interfacing with the security server. Each of the gateway engines carries out monitoring of requested actions by the associated subject entity and, for each requested action, identifies a security context. A security policy is determined for the requested action based on a corresponding security context, and a security verdict is obtained via a communication interface corresponding to the applicable security policy.</description><subject>CALCULATING</subject><subject>COMPUTING</subject><subject>COUNTING</subject><subject>ELECTRIC COMMUNICATION TECHNIQUE</subject><subject>ELECTRIC DIGITAL DATA PROCESSING</subject><subject>ELECTRICITY</subject><subject>PHYSICS</subject><subject>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><fulltext>true</fulltext><rsrctype>patent</rsrctype><creationdate>2019</creationdate><recordtype>patent</recordtype><sourceid>EVB</sourceid><recordid>eNrjZDAITk0uLUpVSE8sSS1PrFRIzs_NLc3LTE4syczPUyiuLC5JzS1WSMxLUchNLcnITynmYWBNS8wpTuWF0twMim6uIc4euqkF-fGpxQWJyal5qSXxocGGBsZmhpaWFk5GxsSoAQCdbCwD</recordid><startdate>20190723</startdate><enddate>20190723</enddate><creator>Doukhvalov, Andrey P</creator><creator>Dyakin, Pavel V</creator><creator>Kulagin, Dmitry A</creator><creator>Lungu, Sergey B</creator><creator>Moiseev, Stanislav V</creator><scope>EVB</scope></search><sort><creationdate>20190723</creationdate><title>Secure gateway communication systems and methods</title><author>Doukhvalov, Andrey P ; Dyakin, Pavel V ; Kulagin, Dmitry A ; Lungu, Sergey B ; Moiseev, Stanislav V</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-epo_espacenet_US10361998B23</frbrgroupid><rsrctype>patents</rsrctype><prefilter>patents</prefilter><language>eng</language><creationdate>2019</creationdate><topic>CALCULATING</topic><topic>COMPUTING</topic><topic>COUNTING</topic><topic>ELECTRIC COMMUNICATION TECHNIQUE</topic><topic>ELECTRIC DIGITAL DATA PROCESSING</topic><topic>ELECTRICITY</topic><topic>PHYSICS</topic><topic>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</topic><toplevel>online_resources</toplevel><creatorcontrib>Doukhvalov, Andrey P</creatorcontrib><creatorcontrib>Dyakin, Pavel V</creatorcontrib><creatorcontrib>Kulagin, Dmitry A</creatorcontrib><creatorcontrib>Lungu, Sergey B</creatorcontrib><creatorcontrib>Moiseev, Stanislav V</creatorcontrib><collection>esp@cenet</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>Doukhvalov, Andrey P</au><au>Dyakin, Pavel V</au><au>Kulagin, Dmitry A</au><au>Lungu, Sergey B</au><au>Moiseev, Stanislav V</au><format>patent</format><genre>patent</genre><ristype>GEN</ristype><title>Secure gateway communication systems and methods</title><date>2019-07-23</date><risdate>2019</risdate><abstract>A computer security architecture applies selected rules from among a set of rules defining one or more security policies to a given set of security context parameters to produce security verdicts, each representing whether a certain action requested by a subject entity is permissible. Each security policy is associated with a corresponding communication interface. A plurality of gateway engines are each associated with at least one of the subject entities and dedicated to interfacing with the security server. Each of the gateway engines carries out monitoring of requested actions by the associated subject entity and, for each requested action, identifies a security context. A security policy is determined for the requested action based on a corresponding security context, and a security verdict is obtained via a communication interface corresponding to the applicable security policy.</abstract><oa>free_for_read</oa></addata></record>
fulltext fulltext_linktorsrc
identifier
ispartof
issn
language eng
recordid cdi_epo_espacenet_US10361998B2
source esp@cenet
subjects CALCULATING
COMPUTING
COUNTING
ELECTRIC COMMUNICATION TECHNIQUE
ELECTRIC DIGITAL DATA PROCESSING
ELECTRICITY
PHYSICS
TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION
title Secure gateway communication systems and methods
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-30T03%3A57%3A19IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-epo_EVB&rft_val_fmt=info:ofi/fmt:kev:mtx:patent&rft.genre=patent&rft.au=Doukhvalov,%20Andrey%20P&rft.date=2019-07-23&rft_id=info:doi/&rft_dat=%3Cepo_EVB%3EUS10361998B2%3C/epo_EVB%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true