METHOD AND APPARATUS FOR FACILITATING INFORMATION SECURITY POLICY CONTROL ON A PER SECURITY ENGINE USER BASIS
Patent №
US 6,499,110
Granted
2002-12-24
Filed 1999
Owner
ENTRUST TECHNOLOGIES LIMITED
Lab
—
AI components
2
kr · planning
Assignment
Recorded
Dataset
AIPD
2023_r1 edition
Application
09343904
An apparatus and method facilitates information security policy control for an information security engine by utilizing security policy association data on a per security engine user basis. Security policy association data may include, for example, data representing identification information of the user of the security engine along with corresponding policy identification data. Policy user identification data may be a hash value of the disk image of an executable software application which uses the security engine, along with policy object identification data which indicates which policy (or policies) that particular application is required to use. A security engine obtains access to this information and also obtains comparison information such as generating a realtime hash value of a calling application that is requesting use of the security engine and compares the newly generated hash value to a stored hash value included as the policy association data. If the hash values match, indicating that the calling application has been previously approved by the trusted policy authority, the policy rules referenced by the policy association data are then employed by the security engine.
AI classification
Ownership
ENTRUST TECHNOLOGIES LIMITED
assignment · 100840785
Assignors
MOSES, TIMOTHY E., LANGFORD, GLENN C.
On an employer assignment, the assignors are typically the inventors.