摘要:
An approach is provided for controlling access to local storage medium. A request is detected from an operating system for accessing a local storage medium. An intermediary agent selectively grants access to the local storage medium according to an access policy, wherein the intermediary agent is distinct from the operating system.
摘要:
A cryptographically scrubbable disk performs erasure of a cryptographic key covering a body of data to render the body of data unintelligible. A scrub controller interfaced between a computing appliance and a storage volume generates a scrub key and encrypts each block of data written to the storage volume using the scrub key. Data read commands decrypt using the same key. The scrub controller is an electronically separate conduit having independent memory and power, thus the scrub key remains within the scrub controller and unexposed, and is thus inaccessible via the processor of the computing appliance. The scrub key remains in the scrub controller such that the scrub key never leaves the scrub controller and is also inaccessible to retrieval since the scrub controller does not share memory or access with the computer and is thus electronically separate from the supported computing appliance.
摘要:
An approach is provided for controlling access to local storage medium. A request is detected from an operating system for accessing a local storage medium. An intermediary agent selectively grants access to the local storage medium according to an access policy, wherein the intermediary agent is distinct from the operating system.
摘要:
A method for encrypting and storing data on a removable medium includes: obtaining a medium key uniquely associated with the removable medium; encrypting the data using the medium key to generate encrypted data; and writing the encrypted data onto the removable medium.
摘要:
A method for encrypting and storing data on a removable medium includes: obtaining a medium key uniquely associated with the removable medium; encrypting the data using the medium key to generate encrypted data; and writing the encrypted data onto the removable medium
摘要:
An approach is provided for controlling access to network resources. A metric (e.g. a voucher) is received corresponding to a policy for accessing a resource within a network. Rating of a user is updated based on the received metric. An access level is granted for accessing the resource to the user based on the rating.
摘要:
A method, computer program product, and device for detecting a reconnaissance of a network through the identification of the information flowing from the network to external sources are provided. The method may include monitoring the information flowing from the network to external sources in order to identify what properties may have been revealed to a potential attacker. The method may include monitoring a response of the network to an inquiry from an external source, determining potential properties of the network that may have been revealed from the response, storing the potential properties in a data repository, and determining a possible reconnaissance of the network based on the properties stored in the data repository. Determining the potential properties of the network revealed by the response may include comparing the response to one or more information templates. Each information template may be associated with one or more properties of the network.
摘要:
An approach is provided for distributing video signals. A digital video feed is received at a media distributor that includes a plurality of decoders and a corresponding plurality of modulators, wherein the digital video feed includes a plurality of video channels. The decoders decode the digital video feed to output analog video signals. The modulators modulate the analog video signals; and a combiner combines the outputs of the modulators to generate a channelized video signal.
摘要:
An approach for tracking documents using image processing is disclosed. Auxiliary information corresponding to compressed digital information is extracted. The auxiliary information is used to output text lines, which undergo a hash function (e.g., checksum operation). In this manner, individual hash values are generated, as well as an overall hash value of the entire file of text lines. A reference set of hash values are maintained to identify other compressed digital information.
摘要:
A method, computer program product, and device for detecting a reconnaissance of a network through the identification of the information flowing from the network to external sources are provided. The method may include monitoring the information flowing from the network to external sources in order to identify what properties may have been revealed to a potential attacker. The method may include monitoring a response of the network to an inquiry from an external source, determining potential properties of the network that may have been revealed from the response, storing the potential properties in a data repository, and determining a possible reconnaissance of the network based on the properties stored in the data repository. Determining the potential properties of the network revealed by the response may include comparing the response to one or more information templates. Each information template may be associated with one or more properties of the network.