Secure file system server architecture and methods
US7565532B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Oct 23, 2006 |
| Grant date | Jul 21, 2009 |
| Priority date | — |
| Expiry date | Oct 23, 2026 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F21/6218
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
A data server platform includes a security file system layer interposed between the platform operating system kernel and file system. The secure file system layer is structured to implement a file access control function that selectively constrains data transfer operations initiated through the operating system kernel by an application program to transfer file data through the file system with respect to a persistent data store. A file access controller, implemented independent of the operating system kernel, is coupled to the security file system layer and supports the file access control function by defining permitted file data transfers through the file system. Management of the file access controller separate from the data server platform ensures that any security breach of the platform operating system kernel cannot compromise the function of the security file system layer.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.