Secure file system server architecture and methods

Electrical computers and digital processing systems: support – Multiple computer communication using cryptography – Security kernel or utility

Reexamination Certificate

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

C713S167000, C726S028000

Reexamination Certificate

active

07143288

ABSTRACT:
A data server platform includes a security file system layer interposed between the platform operating system kernel and file system. The secure file system layer is structured to implement a file access control function that selectively constrains data transfer operations initiated through the operating system kernel by an application program to transfer file data through the file system with respect to a persistent data store. A file access controller, implemented independent of the operating system kernel, is coupled to the security file system layer and supports the file access control function by defining permitted file data transfers through the file system. Management of the file access controller separate from the data server platform ensures that any security breach of the platform operating system kernel cannot compromise the function of the security file system layer.

REFERENCES:
patent: 4423287 (1983-12-01), Zeidler
patent: 4503287 (1985-03-01), Morris et al.
patent: 4588991 (1986-05-01), Atalla
patent: 4649233 (1987-03-01), Bass et al.
patent: 5065429 (1991-11-01), Lang
patent: 5150407 (1992-09-01), Chan
patent: 5235641 (1993-08-01), Nozawa et al.
patent: 5235642 (1993-08-01), Wobber et al.
patent: 5321841 (1994-06-01), East et al.
patent: 5349642 (1994-09-01), Kingdon
patent: 5412717 (1995-05-01), Fischer
patent: 5440635 (1995-08-01), Bellovin et al.
patent: 5453979 (1995-09-01), Schibler et al.
patent: 5495533 (1996-02-01), Linehan et al.
patent: 5506961 (1996-04-01), Carlson et al.
patent: 5539883 (1996-07-01), Allon et al.
patent: 5550984 (1996-08-01), Gelb
patent: 5564106 (1996-10-01), Puhl et al.
patent: 5566170 (1996-10-01), Bakke et al.
patent: 5584023 (1996-12-01), Hsu
patent: 5586260 (1996-12-01), Hu
patent: 5596718 (1997-01-01), Boebert et al.
patent: 5602918 (1997-02-01), Chen et al.
patent: 5638448 (1997-06-01), Nguyen
patent: 5649099 (1997-07-01), Theimer et al.
patent: 5655120 (1997-08-01), Witte et al.
patent: 5657390 (1997-08-01), Elgamal et al.
patent: 5680461 (1997-10-01), McManis
patent: 5682478 (1997-10-01), Watson et al.
patent: 5701343 (1997-12-01), Takashima et al.
patent: 5720034 (1998-02-01), Case
patent: 5754791 (1998-05-01), Dahlgren et al.
patent: 5774668 (1998-06-01), Choquier et al.
patent: 5784463 (1998-07-01), Chen et al.
patent: 5790800 (1998-08-01), Gauvin et al.
patent: 5819045 (1998-10-01), Raman et al.
patent: 5822531 (1998-10-01), Gorczyca et al.
patent: 5825890 (1998-10-01), Elgamal et al.
patent: 5850395 (1998-12-01), Hauser et al.
patent: 5850446 (1998-12-01), Berger et al.
patent: 5862348 (1999-01-01), Pedersen
patent: 5872783 (1999-02-01), Chin
patent: 5905725 (1999-05-01), Sindhu et al.
patent: 5918074 (1999-06-01), Wright et al.
patent: 5922073 (1999-07-01), Shimada
patent: 5931947 (1999-08-01), Burns et al.
patent: 5940507 (1999-08-01), Cane et al.
patent: 5941947 (1999-08-01), Brown et al.
patent: 5974463 (1999-10-01), Warrier et al.
patent: 6006259 (1999-12-01), Adelman et al.
patent: 6038668 (2000-03-01), Chipman et al.
patent: 6052785 (2000-04-01), Lin et al.
patent: 6061650 (2000-05-01), Malkin et al.
patent: 6061796 (2000-05-01), Chen et al.
patent: 6078943 (2000-06-01), Yu
patent: 6078960 (2000-06-01), Ballard
patent: 6084969 (2000-07-01), Wright et al.
patent: 6091720 (2000-07-01), Bedard et al.
patent: 6104716 (2000-08-01), Crichton et al.
patent: 6157649 (2000-12-01), Peirce et al.
patent: 6157955 (2000-12-01), Nerad et al.
patent: 6158011 (2000-12-01), Chen et al.
patent: 6160819 (2000-12-01), Partridge et al.
patent: 6173306 (2001-01-01), Raz et al.
patent: 6175924 (2001-01-01), Arnold
patent: 6185681 (2001-02-01), Zizzi
patent: 6185684 (2001-02-01), Pravetz et al.
patent: 6199077 (2001-03-01), Inalla et al.
patent: 6202157 (2001-03-01), Brownlie et al.
patent: 6219790 (2001-04-01), Lloyd et al.
patent: 6246771 (2001-06-01), Stanton et al.
patent: 6249866 (2001-06-01), Brundrett et al.
patent: 6252878 (2001-06-01), Locklear, Jr. et al.
patent: 6253193 (2001-06-01), Ginter et al.
patent: 6253321 (2001-06-01), Nikander et al.
patent: 6259699 (2001-07-01), Opalka et al.
patent: 6260155 (2001-07-01), Dellacona
patent: 6263445 (2001-07-01), Blumenau
patent: 6266705 (2001-07-01), Ullum et al.
patent: 6272522 (2001-08-01), Lin et al.
patent: 6282652 (2001-08-01), Scheifler
patent: 6286104 (2001-09-01), Buhle et al.
patent: 6292827 (2001-09-01), Raz
patent: 6304973 (2001-10-01), Williams
patent: 6327622 (2001-12-01), Jindal et al.
patent: 6330677 (2001-12-01), Madoukh
patent: 6351775 (2002-02-01), Yu
patent: 6353886 (2002-03-01), Howard et al.
patent: 6377577 (2002-04-01), Bechtolsheim et al.
patent: 6378072 (2002-04-01), Collins et al.
patent: 6389535 (2002-05-01), Thomlinson et al.
patent: 6405315 (2002-06-01), Burns et al.
patent: 6424621 (2002-07-01), Ramaswamy et al.
patent: 6438612 (2002-08-01), Ylonen et al.
patent: 6438652 (2002-08-01), Jordan et al.
patent: 6457130 (2002-09-01), Hitz et al.
patent: 6470389 (2002-10-01), Chung et al.
patent: 6477644 (2002-11-01), Turunen
patent: 6480861 (2002-11-01), Kanevsky et al.
patent: 6487605 (2002-11-01), Leung
patent: 6493318 (2002-12-01), Bare
patent: 6493341 (2002-12-01), Datta et al.
patent: 6496932 (2002-12-01), Trieger
patent: 6499110 (2002-12-01), Moses et al.
patent: 6502192 (2002-12-01), Nguyen
patent: 6505254 (2003-01-01), Johnson et al.
patent: 6505300 (2003-01-01), Chan et al.
patent: 6519636 (2003-02-01), Engel et al.
patent: 6529950 (2003-03-01), Lumelsky et al.
patent: 6539483 (2003-03-01), Harrison et al.
patent: 6542992 (2003-04-01), Peirce et al.
patent: 6560217 (2003-05-01), Peirce et al.
patent: 6564228 (2003-05-01), O'Connor
patent: 6571287 (2003-05-01), Knight et al.
patent: 6584508 (2003-06-01), Epstein et al.
patent: 6594763 (2003-07-01), Madoukh
patent: 6647400 (2003-11-01), Moran
patent: 6662228 (2003-12-01), Limsico
patent: 6665666 (2003-12-01), Brown et al.
patent: 6671773 (2003-12-01), Kazar et al.
patent: 6678828 (2004-01-01), Pham et al.
patent: 6697846 (2004-02-01), Soltis
patent: 6845395 (2005-01-01), Blumenau et al.
patent: 2001/0016907 (2001-08-01), Kang et al.
patent: 2002/0091734 (2002-07-01), Redlich et al.
patent: 2002/0184487 (2002-12-01), Badamo et al.
patent: 2002/1094495 (2002-12-01), Gladstone et al.
patent: 2003/0041198 (2003-02-01), Exton et al.
patent: 2003/0046366 (2003-03-01), Pardikar et al.
patent: 2003/0056095 (2003-03-01), Elliott et al.
patent: 2003/0112977 (2003-06-01), Ray et al.
patent: 2003/0196114 (2003-10-01), Brew et al.
patent: 08272667 (1996-10-01), None
patent: WO 9900958 (1999-01-01), None
patent: WO 01/37095 (2001-05-01), None
patent: WO 02/093314 (2002-11-01), None
patent: WO 02/093389 (2002-11-01), None
patent: WO 02/103498 (2002-12-01), None
Bertino et al. “Advanced Transaction Processing in Multilevel Secure File Stores”, 1998 IEEE.
Cattaneo et al. “The Design and Implementation of Transparent Cryptographic Filesystem for UNIX”, Jun. 2001.
Ludwig et al. “File System Encryption with Integrated User Management”, Oct. 2001 ACM.
O'Connell et al. “JFS: A Secure Distributed File System for Network Computers”, 1999.
Stallings, William. Network Security Essentials, Applications and Standards, 1999 Prentice-Hall, Inc., pp. 90-91.
Blaze, Matt. “A Cryptographic File System for Unix”, 1993 ACM.
Harrington, Anthony et al. “Cryptographic Access Control in a Distributed File System”, 2003 ACM.
Regan, Jude T. et al. “Capability File Names: Separating Authorisation from User Management in an Internet File System”, 2002.
Stallings, William. Operating Systems, Fourth Edition. Dec. 2000, Prentice-Hall, Inc., pp. 525-563.
IBM, IBM Network Processor (IBM32NPR161EPXCAC133) Product Overview, Published Oct. 4, 1999.
BROADCOM, BCM5820 E-Commerce Product Brief, 5820-PB00-R-Mar. 26, 2001, Published 2001.
BROADCOM, BCM5840 Gigabit Security Processor Product Brief, 5840-PB00-R-Dec. 6, 2000, Published 2000.
IBM, The Network Processor—Enabling Technology for High-Performance Networking, Published Aug. 1999.
IBM, Packet Routi

LandOfFree

Say what you really think

Search LandOfFree.com for the USA inventors and patents. Rate them and share your experience with other people.

Rating

Secure file system server architecture and methods does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with Secure file system server architecture and methods, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Secure file system server architecture and methods will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFUS-PAI-O-3656982

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.