发明名称 Device and method for establishing a security policy in a distributed system
摘要 The invention relates to a distributed system comprised of a multitude of computer units, so-called nodes, which are connected to one another over a network and inside of which a local monitoring unit is provided for applying at least one security policy incumbent upon the respective nodes. Said monitoring unit is connected to at least one external monitoring unit, which is located within the network and inside of which systems of rules concerning the security policies of all nodes or of at least one group of nodes can be stored. The invention also relates to a method for operating a distributed system of the aforementioned type. The invention is characterized in that the local monitoring unit is a reference monitor (ECRM=Externally Controlled Reference Monitor) that, at the operation system level of the respective node, controls all operations with objects and interactions between subjects and objects within the nodes based on the system of rules that is at least temporarily implemented in the reference monitor (ECRM) of the respective node.
申请公布号 US2005038790(A1) 申请公布日期 2005.02.17
申请号 US20040489817 申请日期 2004.06.15
申请人 WOLTHUSEN STEPHEN 发明人 WOLTHUSEN STEPHEN
分类号 H04L12/24;H04L12/26;H04L29/06;(IPC1-7):G06F17/00 主分类号 H04L12/24
代理机构 代理人
主权项
地址