Patent References Re34954 Protector system for computer access and use Distributed security auditing subsystem for an operating system Digital document time-stamping with catenate certificate Self documenting record of instrument activity and error messages stamped with date and time of occurrence Method of and apparatus for providing automatic security control of distributions within a data processing system Method and system for detecting intrusion into and misuse of a data processing system Computer use meter and analyzer Time and work tracker Disconnected write authorization in a client/server computing system InventorsAssigneeApplicationNo. 896785 filed on 07/18/1997US Classes:713/177, Signature tree713/164Security kernel or utilityExaminersPrimary: Swann, Tod R.Assistant: Callahan, Paul E. Attorney, Agent or FirmInternational ClassH04L 009/00AbstractIn many computer applications, sensitive information must be kept on an untrusted machine. Such information must be protected against attackers, as well as against partially trusted entities to be given partial, but not total, access to the stored information. This invention provides a method, apparatus and computer-readable data structure for inhibiting an attacker from accessing or corrupting information stored by an untrusted machine. More specifically, in a log file generated during a process in which the untrusted machine is in limited communication with a trusted machine, entries generated prior to the attack remain secure (they cannot be modified without detection), even though subsequent entries can not be trusted. One embodiment of the invention also allows a partially trusted verifier to read and verify entries in the log file, but not to change them without detection. In another embodiment of the invention, operating with or without the trusted machine, the untrusted machine's log file can also incorporate log files of other processes.Field of SearchWith password or key | |