发明名称 Policy enforcement in a secure data file delivery system
摘要 A server interacts with a sender to form a package which can include one or more attached data files to be sent to one or more recipients, and the server applies a policy established by a policy authority of the sender to the package. Since the server both forms the package through interaction with the sender and applies the policy, violations of the policy by the package can be brought to the sender's attention during an interactive session with the sender and before encryption of all or part of the package. As a result, the sender is educated regarding the policy of the sender's policy authority, and the sender can modify the package immediately to comport with the policy. The server delivers the package to intended recipients by sending notification to each recipient and including package identification data, e.g., a URL by which the package can be retrieved.
申请公布号 US9578059(B2) 申请公布日期 2017.02.21
申请号 US201213481549 申请日期 2012.05.25
申请人 Axway Inc. 发明人 Smith Jeffrey C.;Bandini Jean-Christophe
分类号 H04L29/06;H04L29/08 主分类号 H04L29/06
代理机构 Haynes and Boone, LLP 代理人 Haynes and Boone, LLP
主权项 1. A method comprising: in a secure interactive session between a client sender associated with an enterprise and a web server accessible to the client sender via a public internet, receiving data specifying one or more recipients, a subject and message data, and identifying one or more data files for inclusion in a package submitted for delivery to the specified one or more recipients; evaluating at least one of the message data and the one or more data files for violation of a sender policy framework specified and configurable by a policy authority with which the client sender is associated; detecting, based on the evaluating, that a violation of the sender policy framework has occurred in association with the package; after detection of the violation, allowing the client sender to, during the secure interactive session, modify at least one of the message data and one or more data files and resubmit the package for delivery; and effectuating delivery of the package at least in part by sending a notification message to each of the specified one or more recipients, the notification message containing a private universal resource locator (private URL), and the package being securely retrievable by the respective recipient via the private URL and not violative of the sender policy framework.
地址 Phoenix AZ US