US2013254836A1PendingUtilityA1

Browser security standards via access control

Assignee: SAMSUNG ELECTRONICS CO LTDPriority: Dec 7, 2009Filed: May 9, 2013Published: Sep 26, 2013
Est. expiryDec 7, 2029(~3.4 yrs left)· nominal 20-yr term from priority
G06F 21/6272H04L 63/102H04L 63/10G06F 2221/2141H04L 67/02G06F 2221/2113
52
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A computing system is operable to contain a security module within an operating system. This security module may then act to monitor access requests by a web browser and apply mandatory access control security policies to such requests. It will be appreciated that the security module can apply mandatory access control security policies to such web browser access attempts.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
         1 . A method, comprising:
 retrieving a security context for a resource, wherein authorization to access the resource is based on the security context;   maintaining duplicates of the security context on multiple cloud computing platforms;   detecting a change in access control information relating to the resource; and   updating the duplicates maintained based on the change detected.   
     
     
         2 . The method of  claim 1 , further comprising:
 authorizing a request to access the resource if the request complies with the security context for the resource.   
     
     
         3 . The method of  claim 2 , wherein:
 the resource is a web application.   
     
     
         4 . The method of  claim 3 , further comprising:
 executing an instance of the web application on at least one of said multiple cloud computing platforms; and   monitoring execution of the instance of the web application.   
     
     
         5 . The method of  claim 4 , wherein monitoring the instance of the web application comprises:
 detecting a change to access control information for the instance; and   updating each duplicate maintained on each cloud computing platform based on the change detected.   
     
     
         6 . The method of  claim 1 , wherein the security context comprises security rules and standards. 
     
     
         7 . The method of  claim 1 , wherein each duplicate maintained on each cloud computing platform is identical to another duplicate maintained on another cloud computing platform. 
     
     
         8 . The method of  claim 1 , wherein:
 the security context is retrieved from a file system of an operating system.   
     
     
         9 . The method of  claim 8 , wherein:
 a portion of the security context is stored in an extension to a file in the file system.   
     
     
         10 . The method of  claim 8 , wherein:
 a portion of the security context is stored in a stand-alone file in the file system.   
     
     
         11 . A system, comprising:
 a resource having a corresponding security context, wherein authorization to access the resource is based on the security context; and   multiple cloud computing platforms, wherein each cloud computing platform comprises a security module configured to:
 maintain a duplicate of the security context; and 
 detect a change in access control information relating to the resource, wherein each duplicate maintained on each cloud computing platform is updated based on the change detected. 
   
     
     
         12 . The system of  claim 11 , wherein:
 a request to access the resource is authorized if the request complies with the security context for the resource.   
     
     
         13 . The system of  claim 12 , wherein:
 the resource is a web application.   
     
     
         14 . The system of  claim 13 , wherein:
 each security module of each cloud computing platform is further configured to:
 monitor execution of an instance of the web application executing on said cloud computing platform; 
 detect a change to access control information for the instance, wherein each duplicate maintained on each cloud computing platform is updated on the change detected. 
   
     
     
         15 . The system of  claim 11 , wherein the security context comprises security rules and standards. 
     
     
         16 . The system of  claim 11 , wherein each duplicate maintained on each cloud computing platform is identical to another duplicate maintained on another cloud computing platform. 
     
     
         17 . The system of  claim 11 , wherein:
 the security context is retrieved from a file system of an operating system.   
     
     
         18 . The system of  claim 11 , wherein:
 a portion of the security context is stored in an extension to a file in the file system.   
     
     
         19 . A non-transitory computer-readable medium having instructions which when executed on a computer perform a method comprising:
 retrieving a security context for a resource, wherein authorization to access the resource is based on the security context;   maintaining duplicates of the security context on multiple cloud computing platforms;   detecting a change in access control information relating to the resource; and   updating the duplicates maintained based on the change detected.   
     
     
         20 . The medium of  claim 19 , wherein each duplicate maintained on each cloud computing platform is identical to another duplicate maintained on another cloud computing platform.

Join the waitlist — get patent alerts

Track US2013254836A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.