×

Systems and methods for utilizing uni-directional inter-host communication in an air gap environment

  • US 10,051,005 B2
  • Filed: 03/31/2016
  • Issued: 08/14/2018
  • Est. Priority Date: 03/25/2013
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • maintaining a virtual mailbox on a non-trusted network entity executing non-trusted code, on a first network layer, wherein the virtual mailbox is configurable to store messages to be passed between the first network layer and a second network layer, wherein network entities on the second network layer execute only trusted code;

    receiving a request message at the virtual mailbox from a trusted network entity on the second network layer to a non-trusted network entity on the first network layer through a flow of traffic from the second network layer to the first network layer that involves only connections initialized from the first network layer to the second network layer, wherein messages to be downloaded by the trusted network entity are through a connection initialized by a component of the second network layer;

    performing one or more operations in the first network layer in response to the request message;

    generating results in the first network layer in response to the request message;

    storing the results in the virtual mailbox;

    receiving, from authorized trusted code executed on the second network layer, a response check message from the management network entity, the response check message to determine whether the results are available in the virtual mailbox in response to the request message.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×