×

Diagnosability enhancements for multi-level secure operating environments

  • US 7,743,143 B2
  • Filed: 05/03/2002
  • Issued: 06/22/2010
  • Est. Priority Date: 05/03/2002
  • Status: Active Grant
First Claim
Patent Images

1. A method for diagnosing transport failures of a data packet in a multi-level secure network, said method comprising:

  • a) remotely activating a software-based probe at an access control decision point of said network in response to an activation of a first command at a debug station, wherein said software-based probe is capable of identifying an error message for a multi-level trusted networking error, and said access control decision point being an interface in said network that is responsible for enforcing a security policy;

    b) detecting a data transport failure of said data packet being transmitted between two or more computer systems, said detection using a kernel program operating on a microprocessor to trace the data transport failure, said data transport failure resulting from a violation of a security policy of said network;

    c) identifying an error message in response to said data transport failure, said identifying being facilitated by said software-based probe that is configured to monitor threads of at the interface, said error message comprising information identifying said data packet and indicating a cause of said data transport failure;

    d) displaying said error message at said debug station of said network in response to activation of a second command at the debug station;

    e) restricting said activation of said second command to users of an appropriate authority, wherein enforcing said restricting comprises requiring a predetermined user identification and password, andf) remotely deactivating the software-based probe upon diagnosing transport failures so as to allow the network to operate without the software-based probe being activated.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×