Invention Grant
- Patent Title: Translating existing security policies enforced in upper layers into new security policies enforced in lower layers
-
Application No.: US16143250Application Date: 2018-09-26
-
Publication No.: US10715554B2Publication Date: 2020-07-14
- Inventor: Oron Golan , Kfir Wolfson , Amos Zamir , Aviram Fireberger , Udi Shemer
- Applicant: EMC IP Holding Company LLC
- Applicant Address: US MA Hopkinton
- Assignee: EMC IP Holding Company LLC
- Current Assignee: EMC IP Holding Company LLC
- Current Assignee Address: US MA Hopkinton
- Agency: Staniford Tomita LLP
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
Existing policies enforced at or above an operating system (OS) layer of a device are obtained. Translation rules are stored that include data structure descriptions of conditions, corresponding actions performed when the conditions are satisfied, and attributes specified in the existing policies, and attributes of one or more layers below the OS layer that are relevant to policy enforcement in the one or more layers below the OS layer. The existing policies are parsed using the data structure descriptions to identify the conditions, corresponding actions, and attributes specified in the existing policies. New policies are generated that are consistent with the existing policies. The new policies include the identified attributes specified in the existing policies and the attributes relevant to policy enforcement in the one or more layers below the OS layer. The new policies are enforced in the one or more layers below the OS layer.
Public/Granted literature
Information query