首页> 外国专利> System and method for preventing a computing device from obtaining unauthorized access to a secure network or trusted computing environment

System and method for preventing a computing device from obtaining unauthorized access to a secure network or trusted computing environment

机译:用于防止计算设备获得对安全网络或可信计算环境的未授权访问的系统和方法

摘要

A system for preventing a computing device from obtaining unauthorized access to a secure network includes a client agent operably connected to the computing device configured to intercept network traffic information from applications running on the computing device and transmit a network request including application information and the network traffic information. A network token broker operably connected to the network client agent contains a database of application information. The network token broker is configured to cooperate with the network client agent for i) verifying whether the network request should be granted access to the secure network, and ii) cryptographically signing the intercepted network traffic information with a network authorization token, to authorize network access for the intercepted network traffic information. A guard system is configured to inspect the network traffic information from the computing device and reject any traffic information not signed with the network authorization token.
机译:一种用于防止计算设备获得对安全网络的未授权访问的系统,包括可操作地连接到计算设备的客户端代理,该客户端代理被配置为从运行在计算设备上的应用程序拦截网络流量信息,并发送包括应用程序信息和网络流量的网络请求。信息。可操作地连接到网络客户端代理的网络令牌代理包含应用程序信息数据库。网络令牌代理配置为与网络客户端代理合作,以进行以下操作:i)验证是否应授予网络请求对安全网络的访问权;以及ii)使用网络授权令牌对截获的网络流量信息进行加密签名,以授权网络访问截获的网络流量信息。防护系统配置为检查来自计算设备的网络流量信息,并拒绝未使用网络授权令牌签名的任何流量信息。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号