发明名称 Declarative language for specifying a security policy
摘要 The invention is a declarative language system and comprises a language as a tool for expressing network security policy in a formalized way. It allows the specification of security policy across a wide variety of networking layers and protocols. Using the language, a security administrator assigns a disposition to each and every network event that can occur in a data communications network. The event's disposition determines whether the event is allowed (i.e. conforms to the specified policy) or disallowed and what action, if any, should be taken by a system monitor in response to that event. Possible actions include, for example, logging the information into a database, notifying a human operator, and disrupting the offending network traffic.
申请公布号 US6779120(B1) 申请公布日期 2004.08.17
申请号 US20000479781 申请日期 2000.01.07
申请人 SECURIFY, INC. 发明人 VALENTE LUIS FILIPE PEREIRA;COOPER GEOFFREY HOWARD;SHAW ROBERT ALLEN;SHERLOCK KIERAN GERARD
分类号 H04L12/24;H04L29/06;H04L29/08;(IPC1-7):G06F13/364 主分类号 H04L12/24
代理机构 代理人
主权项
地址