Secure file handling in a computer operating system

Cryptography – Particular algorithmic function encoding – Nbs/des algorithm

Patent

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

380 49, 3642225, H04L 900

Patent

active

049842722

ABSTRACT:
A method for administering secure access to files of a computer system. For a process-file pair, a first security label associated with the process is compared with a second security label associated with the file in response to a request to read or write the file. If the security label of the destination (file or process) of the read or write operation does not dominate the security label of the source (file or process), the security label of the destination is dynamically raised accordingly. If the security label of the file or process is raised, an indicator associated with this process and with this file is set to a first state representing that the file is safe for this process-file pair. Indicators associated with every other process linked with this file are set to a second state representing that the file is unsafe for those process-file pairs. The steps of testing the security labels of a file and a process on a read or write operation are omitted when the indicator associated with the process-pair is set to the safe state.
The security labels of certain files are assigned a frozen status. These security labels of such files cannot be altered in response to attempted read or write operations. Therefore, an attempt to wire a file having frozen status is denied when the security label of the writing process dominates that of the file. This mechanism is used to guarantee that files cannot be written to media external to the system, such as terminals, disk drives, tape drives and the like, unless the security label of the external media clears the media for access to the file.

REFERENCES:
patent: 4858117 (1989-08-01), DiChiara et al.
patent: 4864616 (1989-09-01), Pond et al.
patent: 4885789 (1989-12-01), Burger et al.
patent: 4918653 (1990-04-01), Johri et al.
patent: 4926476 (1990-05-01), Covey
Cryptography and Data Security, D. Denning, Addison-Wesley, 1982, Chapter 4, pp. 191-258, 287.

LandOfFree

Say what you really think

Search LandOfFree.com for the USA inventors and patents. Rate them and share your experience with other people.

Rating

Secure file handling in a computer operating system does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with Secure file handling in a computer operating system, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Secure file handling in a computer operating system will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFUS-PAI-O-941512

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.