发明授权
US07765581B1 System and method for enabling scalable security in a virtual private network
有权
用于实现虚拟专用网络中的可扩展安全性的系统和方法
- 专利标题: System and method for enabling scalable security in a virtual private network
- 专利标题(中): 用于实现虚拟专用网络中的可扩展安全性的系统和方法
-
申请号: US09457914申请日: 1999-12-10
-
公开(公告)号: US07765581B1公开(公告)日: 2010-07-27
- 发明人: Germano Caronni , Amit Gupta , Sandeep Kumar , Tom R. Markson , Christoph L. Schuba , Glenn C. Scott
- 申请人: Germano Caronni , Amit Gupta , Sandeep Kumar , Tom R. Markson , Christoph L. Schuba , Glenn C. Scott
- 申请人地址: US CA Redwood City
- 专利权人: Oracle America, Inc.
- 当前专利权人: Oracle America, Inc.
- 当前专利权人地址: US CA Redwood City
- 代理机构: Marsh Fischmann & Breyfogle LLP
- 代理商 Kent A. Lembke; Matthew A. Kaminer
- 主分类号: H04L9/00
- IPC分类号: H04L9/00
摘要:
Methods and systems consistent with the present invention provide dynamic security policies that change the granularity of the security at the node level, process level, or socket level. Specifically, a channel number and virtual address are associated with various processes included in a process table. Since a security policy is required for all processes, secure and insecure processes located on the same channel may communicate with one another. Moreover, processes located on different channels may communicate with one another by a gateway that connects both channels. This scalable blanketing security approach provides an institutionalized method for securing any process, node or socket by providing a unique mechanism for policy enforcement at runtime or by changing the security policies.
信息查询