首页> 外国专利> Systems and methods for enterprise security with collaborative peer to peer architecture

Systems and methods for enterprise security with collaborative peer to peer architecture

机译:具有协作对等体系结构的企业安全性系统和方法

摘要

Systems and methods authenticate a device to operate within an enterprise system with an enterprise policy. An agent, installed on the device, analyzes the device to determine profile information of the device. The determined profile information is sent to a type 2 super peer that verifies whether the profile information conforms to the enterprise policy. If the profile information conforms to the enterprise policy, an agent trust credential is generated, within the type 2 super peer, for the agent, based upon the profile information, and issued to the agent. Authenticity of the device is verified based upon the agent trust credential. If the device is authenticated, communications with the device are permitted. If the device is not authenticated, communications with the device is prevented. In another embodiment, a method restores a device to conform to a system policy. A snapshot of critical components of the device is taken while the device is in compliance with the system policy. The critical components are monitored to identify critical components that differ from the critical components of the snapshot. If differing critical components are detected, the device is restored to conform with system policy by replacing differing critical components based upon the snapshot.
机译:系统和方法利用企业策略认证设备以在企业系统内操作。安装在设备上的代理程序分析设备以确定设备的配置文件信息。确定的配置文件信息被发送到类型2超级对等方,该超级对等方验证配置文件信息是否符合企业策略。如果配置文件信息符合企业策略,则在2类超级对等方中,根据配置文件信息为该代理生成一个代理信任凭证,并将其颁发给该代理。设备的真实性基于代理信任凭证进行验证。如果设备通过了身份验证,则允许与设备进行通信。如果设备未通过身份验证,则将阻止与该设备的通信。在另一个实施例中,一种方法恢复设备以符合系统策略。当设备符合系统策略时,将获取设备关键组件的快照。监视关键组件以识别与快照的关键组件不同的关键组件。如果检测到不同的关键组件,则通过基于快照替换不同的关键组件来恢复设备以符合系统策略。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号