×

System and methods for context-aware and situation-aware secure, policy-based access control for computing devices

  • US 10,685,130 B2
  • Filed: 04/20/2016
  • Issued: 06/16/2020
  • Est. Priority Date: 04/21/2015
  • Status: Active Grant
First Claim
Patent Images

1. A context-aware policy-based access control system having at least one policy decision point for secure adjudication of access requests from a requesting client to protected resources on computing devices, the adjudication being completely hidden from the requesting client, the system comprising:

  • a set of policy rules stored in a memory that describe allowable actions with all associated conditions, parameters, and contextual information for said policy rules;

    an agent coupled to the memory for intercepting the access request from the requesting client and for collecting all conditions and parameters necessary for adjudication as required by the policy rules;

    an incoming information interface for securely receiving external contextual information as required by the policy rules and for storing said external contextual information in at least one policy information point each having a local memory;

    a connecting interface for connecting policy information points to each other and to the policy decision point, each policy information point having an analytic processing engine for computing inferred information from the information stored in said policy information point, whereby the analytic processing engine further includes one or more analytical processors, one or more calibrators for calibrating internal variables against reference or baseline standards, and one or more data type and format conversions;

    an encrypted back-channel coupling the agent and the policy decision point for communicating the access request including all conditions and parameters to the policy decision point thereby hiding the adjudication process from the requesting client; and

    at least one policy enforcement point for enforcing adjudicated decisions;

    whereby the policy decision point applies the set of policy rules for adjudicating access to the protected resources in accordance with the policy rules for permitted operations on the resources.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×