US2013254836A1PendingUtilityA1
Browser security standards via access control
Est. expiryDec 7, 2029(~3.4 yrs left)· nominal 20-yr term from priority
G06F 21/6272H04L 63/102H04L 63/10G06F 2221/2141H04L 67/02G06F 2221/2113
52
PatentIndex Score
0
Cited by
0
References
0
Claims
Abstract
A computing system is operable to contain a security module within an operating system. This security module may then act to monitor access requests by a web browser and apply mandatory access control security policies to such requests. It will be appreciated that the security module can apply mandatory access control security policies to such web browser access attempts.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A method, comprising:
retrieving a security context for a resource, wherein authorization to access the resource is based on the security context; maintaining duplicates of the security context on multiple cloud computing platforms; detecting a change in access control information relating to the resource; and updating the duplicates maintained based on the change detected.
2 . The method of claim 1 , further comprising:
authorizing a request to access the resource if the request complies with the security context for the resource.
3 . The method of claim 2 , wherein:
the resource is a web application.
4 . The method of claim 3 , further comprising:
executing an instance of the web application on at least one of said multiple cloud computing platforms; and monitoring execution of the instance of the web application.
5 . The method of claim 4 , wherein monitoring the instance of the web application comprises:
detecting a change to access control information for the instance; and updating each duplicate maintained on each cloud computing platform based on the change detected.
6 . The method of claim 1 , wherein the security context comprises security rules and standards.
7 . The method of claim 1 , wherein each duplicate maintained on each cloud computing platform is identical to another duplicate maintained on another cloud computing platform.
8 . The method of claim 1 , wherein:
the security context is retrieved from a file system of an operating system.
9 . The method of claim 8 , wherein:
a portion of the security context is stored in an extension to a file in the file system.
10 . The method of claim 8 , wherein:
a portion of the security context is stored in a stand-alone file in the file system.
11 . A system, comprising:
a resource having a corresponding security context, wherein authorization to access the resource is based on the security context; and multiple cloud computing platforms, wherein each cloud computing platform comprises a security module configured to:
maintain a duplicate of the security context; and
detect a change in access control information relating to the resource, wherein each duplicate maintained on each cloud computing platform is updated based on the change detected.
12 . The system of claim 11 , wherein:
a request to access the resource is authorized if the request complies with the security context for the resource.
13 . The system of claim 12 , wherein:
the resource is a web application.
14 . The system of claim 13 , wherein:
each security module of each cloud computing platform is further configured to:
monitor execution of an instance of the web application executing on said cloud computing platform;
detect a change to access control information for the instance, wherein each duplicate maintained on each cloud computing platform is updated on the change detected.
15 . The system of claim 11 , wherein the security context comprises security rules and standards.
16 . The system of claim 11 , wherein each duplicate maintained on each cloud computing platform is identical to another duplicate maintained on another cloud computing platform.
17 . The system of claim 11 , wherein:
the security context is retrieved from a file system of an operating system.
18 . The system of claim 11 , wherein:
a portion of the security context is stored in an extension to a file in the file system.
19 . A non-transitory computer-readable medium having instructions which when executed on a computer perform a method comprising:
retrieving a security context for a resource, wherein authorization to access the resource is based on the security context; maintaining duplicates of the security context on multiple cloud computing platforms; detecting a change in access control information relating to the resource; and updating the duplicates maintained based on the change detected.
20 . The medium of claim 19 , wherein each duplicate maintained on each cloud computing platform is identical to another duplicate maintained on another cloud computing platform.Join the waitlist — get patent alerts
Track US2013254836A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.