×

System and method for self-protecting data

  • US 10,185,584 B2
  • Filed: 08/20/2014
  • Issued: 01/22/2019
  • Est. Priority Date: 08/20/2013
  • Status: Active Grant
First Claim
Patent Images

1. A system comprising a physical memory and a processor, the processor including:

  • a policy/domain handler configured to receive data and a policy associated with the data;

    tracking and output control hardware;

    a hypervisor; and

    a file management module configured to;

    receive a request from a third-party application to interact with a data file containing the data; and

    send an authorization and tag request to the policy/domain handler to generate hardware tags for the data file,wherein, if the authorization succeeds and based on the tag request, the policy/domain handler generates the hardware tags for the data file, andsends the hypervisor a request to create in the physical memory a secure data compartment containing the data file and the hardware tags, the hypervisor associating the hardware tags with each data unit in the secure data compartment, andwherein the tracking and output control hardware tracks the hardware tags of each data unit to ensure that only actions in conformance with the policy are allowed.

View all claims
  • 3 Assignments
Timeline View
Assignment View
    ×
    ×