The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 03, 2015

Filed:

Mar. 09, 2009
Applicants:

Antonio Lain, Bristol, GB;

Patrick Goldsack, Bristol, GB;

Inventors:

Antonio Lain, Bristol, GB;

Patrick Goldsack, Bristol, GB;

Assignee:
Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 15/16 (2006.01); G06F 15/173 (2006.01); H04L 12/28 (2006.01); H04J 1/02 (2006.01); H04L 29/06 (2006.01); H04L 12/751 (2013.01); H04L 12/755 (2013.01); H04L 12/725 (2013.01); H04L 12/24 (2006.01);
U.S. Cl.
CPC ...
H04L 63/0227 (2013.01); H04L 45/02 (2013.01); H04L 45/021 (2013.01); H04L 45/308 (2013.01); H04L 41/0893 (2013.01); H04L 63/0218 (2013.01);
Abstract

A connection policy for a communications network has a local connection policy indicating which paths between a given one of the nodes (computer A, router A, host) and others of the nodes (computers B, C, filters B, B, C, C, hosts) are allowable paths, by a symbolic expression of ranges endpoint addresses and other local connection policies in respect of other nodes. It is implemented in a distributed manner by determining, for the given node, which of the allowable paths, are dual authorized as allowable by the other local connection policy relating to the other node at the other end of that path, by Boolean operations on the symbolic expressions. For a given message for a given path between two of the nodes having their own local connection policies, both of these nodes determine whether the given path is currently dual authorized. This can provide reassurance that changes in versions of the connection policy won't transiently open a risk of undetected unwanted communication.


Find Patent Forward Citations

Loading…