IP Library Granted Patent US 8,489,634
Granted Patent B2
US 8,489,634 · App. 12/531,897 · Granted Jul 16, 2013

File access destination control device and method

Inventor: Takahisa Shirakawa (Tokyo, JP)
Assignee: NEC Personal Computers, Ltd
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,489,634
App. No.
12/531,897
Granted
Jul 16, 2013
Kind
B2
Abstract

Provided is a file access destination control device capable of storing only a file requiring confidentiality in a server and storing a file not requiring confidentiality in a client. A file access destination control device includes: means for setting an access destination with respect to a file accessed by a program whose name is listed in a white list to the client-side storage device; means for setting the access destination with respect to a file accessed by a program whose name is listed in a redirect list to the server-side storage device; means for prohibiting a program whose name is listed neither in the white list nor redirect list from performing writing operation to a file; and means for setting the readout destination with respect to a file accessed by a program whose name is listed neither in the white list nor redirect list to the client-side storage device.

Claims (91)

1. A file access destination control device which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, the file access destination control device comprising:

a computer processor and a memory;

a unit stored in the memory and processed by the computer processor to set the access destination with respect to a file that is accessed by a first program, the first program's name being listed in a white list to the client-side storage device;

a unit stored in the memory and processed by the computer processor to set a writing destination with respect to a file accessed by a second program, the second program's name not being listed in the white list to the server-side storage device; and

a unit stored in the memory and processed by the computer processor to set a preferential readout destination with respect to a file accessed by the second program having a name not listed in the white list to the server-side storage device and setting a non-preferential readout destination with respect to the file accessed by the second program, the second program's name not being listed in the white list to the client-side storage device.

2. The file access destination control device according to claim 1 ,

wherein each program of the first program and the second program refers to the program when the program is a parent program and refers to a parent program of the program when the program is a child program.

3. The file access destination control device according to claim 1 ,

wherein when a given program activates another program as a child process, information on whether the given program is listed or not in the white list is inherited to the child program, and the file access destination control device operates on file access by the child program based on the inherited information.

4. A file access destination control device which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, the file access destination control device comprising:

a computer processor and a memory;

a unit stored in the memory and processed by the computer processor to set a writing destination with respect to a file accessed by a first program, the first program's name being listed in a redirect list to the server-side storage device;

a unit stored in the memory and processed by the computer processor to set a preferential readout destination with respect to a file accessed by the first program, the first program's name being listed in the redirect list to the server-side storage device and setting a non-preferential readout destination with respect to the file accessed by the first program, the first program's name being listed in the redirect list to the client-side storage device; and

a unit stored in the memory and processed by the computer processor to set the access destination with respect to a file accessed by a second program, the second program's name not being listed in the redirect list to the client-side storage device.

5. The file access destination control device according to claim 4 , wherein each program of the first program and the second program refers to the program when the program is a parent program and refers to a parent program of the program when the program is a child program.

6. The file access destination control device according to claim 4 , wherein when a given program activates another program as a child process, information on whether the given program is listed or not in the redirect list is inherited to the child program, and the file access destination control device operated on file access by the child program based on the inherited information.

7. A file access destination control device which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, the file access destination control device comprising:

a computer processor and a memory;

a unit stored in the memory and processed by the computer processor to set the access destination with respect to a file accessed by a first program, the first program's name being listed in a white list to the client-side storage device;

a unit stored in the memory and processed by the computer processor to set a writing destination with respect to a file accessed by a second program, the second program's name being listed in a redirect list to the server-side storage device;

a unit stored in the memory and processed by the computer processor to set a preferential readout destination with respect to a file accessed by the second program, the second program's name being listed in the redirect list to the server-side storage device and setting a non-preferential readout destination with respect to the file accessed by the second program, the second program's name being listed in the redirect list to the client-side storage device; and

a unit stored in the memory and processed by the computer processor to prohibit a third program, the third program's name being listed neither in the white list nor the redirect list from performing writing operation of a file.

8. The file access destination control device according to claim 7 , wherein each program of the first program, the second program, and the third program refers to the program when the program is a parent program and refers to a parent program of the program when the program is a child program.

9. The file access destination control device according to claim 7 , wherein when a given program activates another program as a child process, information on whether the given program is listed or not in the white list is inherited to the child program, and the file access destination control device operates on file access by the child program based on the inherited information.

10. The file access destination control device according to claim 7 , wherein when a given program activates another program as a child process, information on whether the given program is listed or not in the redirect list is inherited to the child program, and the file access destination control device operated on file access by the child program based on the inherited information.

11. A file access destination control device which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, the file access destination control device comprising:

a computer processor and a memory;

a unit stored in the memory and processed by the computer processor to set the access destination with respect to a file having an attribute listed in a white list to the client-side storage device;

a unit stored in the memory and processed by the computer processor to set a writing destination with respect to a file having an attribute not listed in the white list to the server-side storage device; and

a unit stored in the memory and processed by the computer processor to set a preferential readout destination with respect to a file having an attribute not listed in the white list to the server-side storage device and setting a non-preferential readout destination with respect to the file having an attribute not listed in the white list to the client-side storage device.

12. A file access destination control device which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, the file access destination control device comprising:

a computer processor and a memory;

a unit stored in the memory and processed by the computer processor to set a writing destination with respect to a file having an attribute listed in a redirect list to the server-side storage device;

a unit stored in the memory and processed by the computer processor to set a preferential readout destination with respect to a file having an attribute listed in the redirect list to the server-side storage device and setting a non-preferential readout destination with respect to the file having an attribute listed in the redirect list to the client-side storage device; and

a unit stored in the memory and processed by the computer processor to set the access destination with respect to a file having an attribute not listed in the redirect list to the client-side storage device.

13. A file access destination control device which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, file access destination control device comprising:

a computer processor and a memory;

a unit stored in the memory and processed by the computer processor to set the access destination with respect to a file having an attribute listed in a white list to the client-side storage device;

a unit stored in the memory and processed by the computer processor to set a writing destination with respect to a file having an attribute listed in a redirect list to the server-side storage device;

a unit stored in the memory and processed by the computer processor to set a preferential readout destination with respect to a file accessed by the program, the program's name being listed in the redirect list to the server-side storage device and setting a non-preferential readout destination with respect to the file accessed by the program, the program's name being listed in the redirect list to the client-side storage device; and

a unit stored in the memory and processed by the computer processor to prohibit writing operation of a file having an attribute listed neither in the white list nor the redirect list.

14. The file access destination control device according to claim 1 ,

wherein the client includes a cache memory, and

wherein the file access destination control device further comprises a unit stored in the memory and processed by the computer processor to access the server-side storage device through the cache memory when the client accesses the server-side storage device.

15. The file access destination control device according to claim 14 , wherein the cache memory is a volatile memory.

16. A file access destination control method which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, comprising the steps of:

setting, by a file access destination control device including at least a computer processor and a memory, the access destination with respect to a file that is accessed by the program, the program's name being listed in a white list to the client-side storage device;

setting, by the file access destination control device, a writing destination with respect to a file accessed by the program, the program's name not being listed in the white list to the server-side storage device; and

setting, by the file access destination control device, a preferential readout destination with respect to a file accessed by the program, the program's name not being listed in the white list to the server-side storage device and setting a non-preferential readout destination with respect to the file accessed by the program, the program's name not being listed in the white list to the client-side storage device.

17. A file access destination control method which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, comprising the steps of:

setting, by a file access destination control device including at least a computer processor and a memory, a writing destination with respect to a file accessed by the program, the program's name being listed in a redirect list to the server-side storage device;

setting, by the file access destination control device, a preferential readout destination with respect to a file accessed by the program, the program's name being listed in the redirect list to the server-side storage device and setting a non-preferential readout destination with respect to the file accessed by the program, the program's name being listed in the redirect list to the client-side storage device; and

setting, by the file access destination control device, the access destination with respect to a file accessed by the program, the program's name not being listed in the redirect list to the client-side storage device.

18. A file access destination control method which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, comprising the steps of:

setting, by a file access destination control device including at least a computer processor and a memory, the access destination with respect to a file accessed by the program, the program's name being listed in a white list to the client-side storage device;

setting, by the file access destination control device, a writing destination with respect to a file accessed by the program, the program's name being listed in a redirect list to the server-side storage device; and

setting, by the file access destination control device, a preferential readout destination with respect to a file accessed by the program, the program's name being listed in the redirect list to the server-side storage device and setting the non-preferential readout destination with respect to the file accessed by the program, the program's name being listed in the redirect list to the client-side storage device; and

prohibiting the program, the program's name being listed neither in the white list nor the redirect list from performing writing operation of a file.

19. A file access destination control method which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, comprising the steps of:

setting, by a file access destination control device including at least hardware, the access destination with respect to a file having an attribute listed in a white list to the client-side storage device;

setting, by the file access destination control device, a writing destination with respect to a file having an attribute not listed in the white list to the server-side storage device; and

setting, by the file access destination control device, a preferential readout destination with respect to a file having an attribute not listed in the white list to the server-side storage device and setting the non-preferential readout destination with respect to the file having an attribute not listed in the white list to the client-side storage device.

20. A file access destination control method which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, comprising the steps of:

setting, by a file access destination control device including at least hardware, a writing destination with respect to a file having an attribute listed in a redirect list to the server-side storage device;

setting, by the file access destination control device, a preferential readout destination with respect to a file having an attribute listed in the redirect list to the server-side storage device and setting a non-preferential readout destination with respect to the file having an attribute listed in the redirect list to the client-side storage device; and

setting, by the file access destination control device, the access destination with respect to a file having an attribute not listed in the redirect list to the client-side storage device.

21. A file access destination control method which selects a client-side storage device or a server-side storage as an actual access destination with respect to a file having an access destination set to the client-side storage device by a program, comprising the steps of:

setting, by a file access destination control device including at least a computer processor and a memory, the access destination with respect to a file having an attribute listed in a white list to the client-side storage device;

setting, by the file access destination control device, a writing destination with respect to a file having a attribute listed in a redirect list to the server-side storage device; and

setting, by the file access destination control device, a preferential readout destination with respect to a file accessed by the program, the program's name being listed in the redirect list to the server-side storage device and setting a non-preferential readout destination with respect to the file accessed by the program, the program's name being listed in the redirect list to the client-side storage device; and

prohibiting writing operation of a file having an attribute listed neither in the white list nor redirect list.

22. The file access destination control device according to claim 4 ,

wherein the client includes a cache memory, and

wherein the file access destination control device further comprises means for accessing the server-side storage device through the cache memory when the client accesses the server-side storage device.

23. The file access destination control device according to claim 22 , wherein the cache memory is a volatile memory.

24. The file access destination control device according to claim 7 ,

wherein the client includes a cache memory, and

wherein the file access destination control device further comprises means for accessing the server-side storage device through the cache memory when the client accesses the server-side storage device.

25. The file access destination control device according to claim 24 , wherein the cache memory is a volatile memory.

26. The file access destination control device according to claim 11 ,

wherein the client includes a cache memory, and

wherein the file access destination control device further comprises means for accessing the server-side storage device through the cache memory when the client accesses the server-side storage device.

27. The file access destination control device according to claim 26 , wherein the cache memory is a volatile memory.

28. The file access destination control device according to claim 12 ,

wherein the client includes a cache memory, and

wherein the file access destination control device further comprises means for accessing the server-side storage device through the cache memory when the client accesses the server-side storage device.

29. The file access destination control device according to claim 28 , wherein the cache memory is a volatile memory.

30. The file access destination control device according to claim 13 ,

wherein the client includes a cache memory, and

wherein the file access destination control device further comprises means for accessing the server-side storage device through the cache memory when the client accesses the server-side storage device.

31. The file access destination control device according to claim 30 , wherein the cache memory is a volatile memory.

Assignments (2)
CHANGE OF NAME Recorded Nov 10, 2011
From: NEC PERSONAL PRODUCTS, LTD.
To: NEC PERSONAL COMPUTERS, LTD.
Reel/Frame 027207/0896 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 23, 2009
From: SHIRAKAWA, TAKAHISA
To: NEC PERSONAL PRODUCTS, LTD.
Reel/Frame 023270/0650 →
Priority Claims (1)
JP 2007-070619 · Mar 19, 2007 · national
Continuity (1)
Related Publication 20100114959A1 · May 6, 2010