INTEGRATED SYSTEM FOR NETWORK LAYER SECURITY AND FINE-GRAINED IDENTITY-BASED ACCESS CONTROL

Patent №

US 6,986,061

Granted

2006-01-10

Filed 2000

Owner

IBM CORPORATION

AI components

1

planning

Assignment

Recorded

Dataset

AIPD

2023_r1 edition

Application

09718041

The present invention provides a method, system, and computer program product for enhancing security within a distributed computing network while enabling fine-grained access control for packets traveling through the network. The disclosed techniques enable this fine-grained access control while simultaneously providing broad-brush application-independent and user-independent security for Internet Protocol (IP) packets that are in transit over both secure networks (such as a corporate intranet) and non-secure networks (such as the public Internet). Access control decisions are delegated to an access control engine, and are based upon mutually authenticated identity information (e.g. of a system user and/or application) that is extracted from information exchanged as part of an underlying security service (such as the Internet Key Exchange of the IP Security Protocol).

PlanningH04L 63/0869H04L 9/0841H04L 9/321H04L 9/3273H04L 63/0464H04L 63/105H04L 2209/60H04L 2209/80

AI classification

Planning0.89
Knowledge representation0.21
AI hardware0.07
Evolutionary computation0.07
Machine learning0.00
Vision0.00
Speech0.00
Natural language0.00

Ownership

IBM CORPORATION

assignment · 114860745

Assignors

KUNZINGER, CHARLES A.

On an employer assignment, the assignors are typically the inventors.

© 2026 NYSGPT2525 LLC