Generalized policy server

Electrical computers and digital processing systems: multicomput – Miscellaneous

Reexamination Certificate

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

C709S224000, C707S793000

Reexamination Certificate

active

09720277

ABSTRACT:
A policy system includes the policy server (2617); a policy database (2619) which located at policy decision point (2723); the access/response entity (2603); resource server (2711); policy message (2725) and policy enforcement point (2721). System connected through public network (2702) or internal network (103). The access filter (107, 203, 403) control access by use a local copy of an access control data base to determine whether an access request made by a user. Changes made by administrators in the local copies are propagated to all of the other local copies. Access is permitted or denied according to of access policies (307) which define access in terms of the user groups (FIGS.9-12) and information sets (FIGS.13A-18). The rights of administrators are similarly determined by administrative policies (FIGS.23A-C). Access is further permitted only if the trust levels of the network by which is made by the sufficient access (FIGS.25-29). A policy server component of the access filter has been separated from the access filter and the policies have been generalized to permit administrators of the policy server to define new types of actions and new types of entities. Policies may now further have specifications for time intervals during which the policies are in force and the entities may be associated with attributes that specify how the entity is to be used when the policy applies.

REFERENCES:
patent: 4919545 (1990-04-01), Yu
patent: 4956769 (1990-09-01), Smith
patent: 4961224 (1990-10-01), Yung
patent: 5012405 (1991-04-01), Nishikado et al.
patent: 5115501 (1992-05-01), Kerr
patent: 5117349 (1992-05-01), Tirfing et al.
patent: 5220604 (1993-06-01), Gasser et al.
patent: 5249230 (1993-09-01), Mihm et al.
patent: 5263157 (1993-11-01), Janis
patent: 5263158 (1993-11-01), Janis
patent: 5263165 (1993-11-01), Janis
patent: 5265221 (1993-11-01), Miller
patent: 5276735 (1994-01-01), Boebert et al.
patent: 5276870 (1994-01-01), Shan et al.
patent: 5276901 (1994-01-01), Howell et al.
patent: 5335346 (1994-08-01), Fabbio
patent: 5423034 (1995-06-01), Cohen-Levy et al.
patent: 5438508 (1995-08-01), Wyman
patent: 5442342 (1995-08-01), Kung
patent: 5446903 (1995-08-01), Abraham et al.
patent: 5455945 (1995-10-01), VanderDrift
patent: 5455953 (1995-10-01), Russell
patent: 5495607 (1996-02-01), Pisello et al.
patent: 5504890 (1996-04-01), Sanford
patent: 5534855 (1996-07-01), Shockley et al.
patent: 5544322 (1996-08-01), Cheng et al.
patent: 5550906 (1996-08-01), Chau et al.
patent: 5553282 (1996-09-01), Parrish et al.
patent: 5568613 (1996-10-01), Futral
patent: 5579222 (1996-11-01), Bains et al.
patent: 5634053 (1997-05-01), Noble et al.
patent: 5652787 (1997-07-01), O'Kelly
patent: 5675782 (1997-10-01), Montague et al.
patent: 5678042 (1997-10-01), Pisello et al.
patent: 5696486 (1997-12-01), Poliquin et al.
patent: 5696898 (1997-12-01), Baker et al.
patent: 5701458 (1997-12-01), Bsaibes et al.
patent: 5701461 (1997-12-01), Dalal et al.
patent: 5706427 (1998-01-01), Tabuki
patent: 5720023 (1998-02-01), Putland et al.
patent: 5720033 (1998-02-01), Deo
patent: 5721908 (1998-02-01), Lagarde et al.
patent: 5729734 (1998-03-01), Parker et al.
patent: 5748890 (1998-05-01), Goldberg et al.
patent: 5752245 (1998-05-01), Parrish et al.
patent: 5758083 (1998-05-01), Singh et al.
patent: 5771291 (1998-06-01), Newton et al.
patent: 5774650 (1998-06-01), Chapman et al.
patent: 5787427 (1998-07-01), Benantar et al.
patent: 5787428 (1998-07-01), Hart
patent: 5793964 (1998-08-01), Rogers et al.
patent: 5796951 (1998-08-01), Hamner et al.
patent: 5797128 (1998-08-01), Birnbaum
patent: 5799308 (1998-08-01), Dixon
patent: 5826010 (1998-10-01), Joseph et al.
patent: 5828832 (1998-10-01), Holden et al.
patent: 5828833 (1998-10-01), Belville et al.
patent: 5835726 (1998-11-01), Shwed et al.
patent: 5841970 (1998-11-01), Tabuki
patent: 5859978 (1999-01-01), Sonderegger et al.
patent: 5862325 (1999-01-01), Reed et al.
patent: 5864683 (1999-01-01), Boebert et al.
patent: 5870561 (1999-02-01), Jarvis et al.
patent: 5878431 (1999-03-01), Potterveld et al.
patent: 5884033 (1999-03-01), Duvall et al.
patent: 5884274 (1999-03-01), Walker et al.
patent: 5892909 (1999-04-01), Grasso et al.
patent: 5898830 (1999-04-01), Wesinger, Jr. et al.
patent: 5911143 (1999-06-01), Deinhart et al.
patent: 5911776 (1999-06-01), Guck
patent: 5931917 (1999-08-01), Nguyen et al.
patent: 5941947 (1999-08-01), Brown et al.
patent: 5951649 (1999-09-01), Dobbins et al.
patent: 5956715 (1999-09-01), Glasser et al.
patent: 5983270 (1999-11-01), Abraham et al.
patent: 5987611 (1999-11-01), Freund
patent: 5991807 (1999-11-01), Schmidt et al.
patent: 6038664 (2000-03-01), Schumacher et al.
patent: 6141686 (2000-10-01), Jackowski et al.
patent: 6147976 (2000-11-01), Shand et al.
patent: 6178505 (2001-01-01), Schneider et al.
patent: 6182226 (2001-01-01), Reid et al.
patent: 6205576 (2001-03-01), Rajala et al.
patent: 6216231 (2001-04-01), Stubblebine
patent: 6230271 (2001-05-01), Wadlow et al.
patent: 6253251 (2001-06-01), Benantar et al.
patent: 6286052 (2001-09-01), McCloghrie et al.
patent: 6295292 (2001-09-01), Voit et al.
patent: 6408336 (2002-06-01), Schneider et al.
patent: 6490679 (2002-12-01), Tumblin et al.
patent: 6502131 (2002-12-01), Vaid et al.
patent: 6678835 (2004-01-01), Shah et al.
patent: 6785728 (2004-08-01), Schneider et al.
patent: 2004/0199402 (2004-10-01), Walker et al.
patent: 2005/0010820 (2005-01-01), Jacobson
patent: 2006/0149968 (2006-07-01), Edery et al.
patent: 0736827 (1996-10-01), None
patent: 2317539 (1998-03-01), None
patent: WO 96/05549 (1996-02-01), None
patent: WO 97/00471 (1997-01-01), None
patent: WO 00/79434 (2000-12-01), None
Management of Networks that provide QoS Guarantees—Sprenkels, van der Waaij.. '□□alpha01.ihep.ac.cn/˜caixj
etm
m/general/dsom98.pdf.
The Flask Security Architecture: System Support..—Spencer, Smalley, .. (1998) ;□□ncos.cs.utah.edu/papers/flask-usenixsec99.ps.gz.
Implementation of a Management Agent for Interpreting..—Marriott, Sloman (1996) ;□□dse.doc.ic.ac.uk/dse-papers/management/policyDSOM96.ps.gz.
A Simple Model for Active Rules and their Behavior in Deductive..—Zaniolo (1994) www.cs.ucla.edu/˜zaniolo/papers/w9.pdf.
Transparent Network Security Policy Enforcement—Keromytis, Wright (2000) www.cis.upenn.edu/˜angelos/Papers/bridgepaper.ps.gz.
A Policy-Driven Approach to Availability and ..—Lutfiyya, Bauer.. (1997) chan.csd.uwo.ca/research/cords/Papers/policy.ps.
The Viewserver Hierarchy for Inter-Domain Routing..—Cengiz Alaettinoglu (1995) ftp.cs.umd.edu/pub/papers
cstrl.umcp/CS-TR-3.
The Flask Security Architecture: System Support..—Spencer, Smalley, .. (1998) mancos.cs.utah.edu/papers/flask-usenixsec99.ps.gz.
Route Servers for Inter-Domain Routing—Govindan, Alaettinoglu, Varadhan, .. (1998) ftp.isi.edu/pub/cengiz/publications/RA:RS.ps.gz.
Fast and effective multiple moving targets tracking method for mobile robots Jiyoon Chung; Yang, H.S.; vol. 3, May 21-27, 1995 pp. 2645-2650 vol. 3 Digital Object Identifier 10.1109/ROBOT.1995.525656.
Info-Plaza: A social information filtering system for the World-Wide Web Hiraiwa, S.; Kohda, Y.; Parallel and Distributed Systems, 1996. Proceedings., 1996 International Conference on Jun. 3-6, 1996 pp. 10-15.
Selective broadcast data distribution systems Yeung, K.H.; Yum, T.S.; Distributed Computing Systems, 1995., Proceedings of the 15th International Conference on May 30-Jun. 2, 1995 pp. 317-324.
Aziz et al., “Simple Key-Management for Internet Protocols (SKIP),” Proc. of INET, 1995.
Ringey et al., “Remote Authentication Dial in User Service (RADIUS),” RFC 2138, Apr. 1997.
Marriott et al., “Management Policy Service for Distributed Systems,” IEEE 1996.
Ford, William, “Administration in a Multiple Policy/Domain Environment: The Administration and Melding of Disparate Policies,” IEEE 1995.
Sandhu et al., Access Control: Principles and Practice, IEEE Communications Mag

LandOfFree

Say what you really think

Search LandOfFree.com for the USA inventors and patents. Rate them and share your experience with other people.

Rating

Generalized policy server does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with Generalized policy server, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Generalized policy server will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFUS-PAI-O-3766029

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.