×

Method and system for implementing mandatory file access control in native discretionary access control environments

  • US 9,917,863 B2
  • Filed: 05/20/2016
  • Issued: 03/13/2018
  • Est. Priority Date: 02/08/2007
  • Status: Active Grant
First Claim
Patent Images

1. A computer system configured to act as a Domain Controller (DC) for a computer network comprising plurality of client computers, the plurality of client computers running an operating system that uses a discretionary access policy regarding file operations, the computer system comprising:

  • one or more hardware processors communicatively coupled to a computer readable storage medium wherein the computer readable storage medium comprises instructions stored thereon that when executed by the one or more processors cause the one or more processors to;

    receive an indication from a mandatory access control agent executing on a first client computer of the plurality of client computers to create a login session for a first user, the login session configured to exclude the first user from a default user group and to associate the first user with a second user group for a duration of the login session,wherein protected files accessible on the computer network are associated with an access control list that denies access to the default user group and allows access to the second user group, andwherein the access control agent and the DC implement a security policy regarding file operations within the computer network that is configured by default with the discretionary access policy regarding file operations.

View all claims
  • 11 Assignments
Timeline View
Assignment View
    ×
    ×