首页> 外国专利> Computer network security system and method having unilateral enforceable security policy provision

Computer network security system and method having unilateral enforceable security policy provision

机译:具有单方面可执行的安全策略规定的计算机网络安全系统和方法

摘要

A computer network security system and method utilizes digitally signed and centrally assigned policy data, such as password length rules, that is unilaterally enforced at network nodes by node policy enforcement engines. The policy data may be variable on a per client or network node basis through a centralized authority, such as a certification authority. The computer network security system provides variable security policy rule data for distribution to at least one network node through a central security policy rule data distribution source, such as the certification authority. The central security policy rule data distribution source associates a digital signature to the variable security policy rule data to ensure the integrity of the policies in the system. Each network node uses a policy rule data engine and policy rule table to decode policy rule data and enforce the policy rules as selectively determined through the central authority.
机译:一种计算机网络安全系统和方法利用数字签名和集中分配的策略数据,例如密码长度规则,这些数据由节点策略执行引擎在网络节点上单方面执行。策略数据可以通过诸如证书颁发机构之类的集中机构在每个客户端或网络节点的基础上变化。所述计算机网络安全系统提供可变的安全策略规则数据,以通过诸如证书颁发机构之类的中央安全策略规则数据分发源分发到至少一个网络节点。中央安全策略规则数据分发源将数字签名与可变安全策略规则数据相关联,以确保系统中策略的完整性。每个网络节点都使用策略规则数据引擎和策略规则表来解码策略规则数据,并通过中央权威机构有选择地确定策略规则。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号