Invention Grant
- Patent Title: Posixly secure open and access files by inode number
-
Application No.: US14943948Application Date: 2015-11-17
-
Publication No.: US09824233B2Publication Date: 2017-11-21
- Inventor: Marc A. Kaplan , Wayne A. Sawdon
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Sherman IP LLP
- Agent Kenneth L. Sherman; Steven Laut
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F21/62 ; H04L9/32

Abstract:
A method for secure portable operating system interface (POSIX) directory traversing for opening and accessing files by inode number. The method includes receiving, by a process executed by a processor, a request for a ticket for traversing a file system. The process generates a secure key for a unique handle object based on the request for the ticket. An authentication code is generated for the ticket using a numeric file identifier and the secure key. In response to reading a directory with POSIX x and r permissions according to directory permission bits or an access control list (ACL), the ticket is returned including ticket information including the numeric file identifier, generation information and the authentication code. In response to a request to open a directory, the ticket information is validated based on the secure key. A directory is opened for reading using the validated ticket information and the unique handle.
Public/Granted literature
- US20170140165A1 POSIXLY SECURE OPEN AND ACCESS FILES BY INODE NUMBER Public/Granted day:2017-05-18
Information query