发明名称 System and method for policy driven protection of remote computing environments
摘要 A system that incorporates teachings of the subject disclosure may include, for example, receiving multiple software agents and configuring a network of the multiple software agents according to a predetermined policy. The process can further include facilitating secure communications among software agents of the network of the multiple software agents according to the predetermined policy. A state of one of the system, a system environment within which the system operates, or a combination thereof can be determined, based on the secure communications among the software agents of the network of the multiple software agents. A computing environment can be facilitated conditionally on the state of the one of the system, the system environment, or the combination thereof, according to the predetermined policy to support a mission application. Other embodiments are disclosed.
申请公布号 US9355228(B2) 申请公布日期 2016.05.31
申请号 US201313942319 申请日期 2013.07.15
申请人 Angel Secure Networks, Inc. 发明人 Smith, III Fred Hewitt;Smith Cynthia;Smith Benjamin;Sabin Daniel
分类号 G06F21/12;G06F21/55;H04L29/06 主分类号 G06F21/12
代理机构 Guntin & Gust, PLC 代理人 Guntin & Gust, PLC ;Trementozzi Ralph
主权项 1. A method for securely producing a cryptographic session key, comprising: establishing, by a transportable device comprising at least one processor and a plurality of sensors, a software agent network comprising a plurality of software agents networked together in a predetermined configuration according to a network definition file, wherein the transportable device, when deployed in a predetermined environment, contains encrypted sensitive information; obtaining, by the transportable device, a plurality of examination results based on sensory information obtained from the plurality of sensors operating within the predetermined environment when deployed therein, wherein the sensory information comprises a combination of more than one of temperature, humidity, light, position, orientation, altitude, motion, speed, acceleration, biological information, and mission status, and wherein each software agent of the plurality of software agents conducts a review of a respective examination result of the plurality of examination results of the predetermined environment based on a plurality of predetermined sensory ranges, to obtain reviews of the plurality of examination results of the predetermined environment; generating, by the transportable device, a plurality of encryption key fragments in response to the reviews of the plurality of examination results of the predetermined environment, wherein each encryption key fragment of the plurality of encryption key fragments is determined by a respective software agent of the plurality of software agents, based on the review of the respective examination result of the plurality of examination results of the predetermined environment; combining, by the transportable device, the plurality of encryption key fragments based on the network definition file, to obtain a field-determined cryptographic session key; responsive to the plurality of examination results of the predetermined environment falling within the plurality of sensory ranges, decrypting, by the transportable device, the encrypted sensitive information by way of the field-determined session key, to obtain a clear text version of the sensitive information at the transportable device; and responsive to at least one of the plurality of examination results of the predetermined environment falling outside of the plurality of sensory ranges, preventing, by the transportable device, decryption of the encrypted sensitive information at the transportable device.
地址 Old Town ME US