IP Library › Granted Patent US 12,073,004
Granted Patent B2
US 12,073,004 · App. 17/626,504 · Granted Aug 27, 2024

Verification information generating system, verification information generating method, and verification information generating program

Inventors: Tsuneko Kura (Musashino, JP); Seishi Ouchi (Musashino, JP); Takeshi Nakatsuru (Musashino, JP); Kazumi Kinoshita (Musashino, JP)
Assignee: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
G06F21/64G06F2221/033
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,073,004
App. No.
17/626,504
Granted
Aug 27, 2024
Kind
B2
Abstract

A verification information creation apparatus acquires an installation directory of software from equipment on which the software is installed, and acquires a file path and a hash value of a file whose hash value is acquirable based on types of files stored in the acquired directory. Then, the verification information creation apparatus creates verification information about the software, where the verification information includes the acquired file path and the hash value of the file.

Claims (32)

1. A verification information creation system comprising:

a memory; and

a processor coupled to the memory and configured to:

install software to be verified, on equipment, acquire an installation directory of the software from the equipment, identify a file whose hash value is acquirable, based on types of files stored in the acquired directory, and acquire a file path and a hash value of the file whose hash value is acquirable; and

create verification information used to verify the software, the verification information including the file path and the hash value of the file, the file path and the hash value being acquired by the processor,

wherein the processor is further configured to:

determine whether the software to be verified is contained in an rpm package or a deb package;

acquire a file path and a hash value of a file to be checked using the hash value during verification of the file out of files contained in the software package by executing a predetermined command for the software package of the software if it is determined that the software to be verified is contained in an rpm package or a deb package; and

create verification information about the software package, the verification information including the file path and the hash value of the file acquired by the processor.

2. The verification information creation system according to claim 1 , wherein

when the file whose hash value is acquirable is a text file, the hash value of the text file after settings of the software on the equipment are changed is acquired.

3. The verification information creation system according to claim 1 , wherein

when the software is installed using a tar file, an installation directory is acquired, the installation directory being of the software from config.nice or config.status saved in a directory into which the tar file is extracted on the equipment.

4. The verification information creation system according to claim 1 , wherein:

if the verification information is changed after being created, the processor installs the software on the equipment again and acquires a file path and a hash value of the file whose hash value is acquirable; and

the processor creates verification information about the software, the verification information including the file path and the hash value of the file, the file path and the hash value being acquired by the processor.

5. The verification information creation system according to claim 1 , wherein the processor is further configured to:

add a user signature of a user of the equipment on which the software is installed and a public-key certificate of the user to the verification information.

6. A verification information creation method performed by a verification information creation system, the method comprising:

installing software to be verified, on equipment, acquiring an installation directory of the software from the equipment, identifying a file whose hash value is acquirable, based on types of files stored in the acquired directory, and acquiring a file path and a hash value of the file whose hash value is acquirable; and

creating verification information used to verify the software, the verification information including the acquired file path and the hash value of the file,

wherein the method further includes:

determining whether the software to be verified is contained in an rpm package or a deb package;

acquiring a file path and a hash value of a file to be checked using the hash value during verification of the file out of files contained in the software package by executing a predetermined command for the software package of the software if it is determined that the software to be verified is contained in an rpm package or a deb package; and

creating verification information about the software package, the verification information including the file path and the hash value of the file acquired.

7. A non-transitory computer readable storage medium having stored therein a verification information creation program that causes a computer to execute a process comprising:

installing software to be verified, on equipment, acquiring an installation directory of the software from the equipment, identifying a file whose hash value is acquirable, based on types of files stored in the acquired directory, and acquiring a file path and a hash value of the file whose hash value is acquirable; and

creating verification information used to verify the software, the verification information including the acquired file path and the hash value of the file,

wherein the process further includes:

determining whether the software to be verified is contained in an rpm package or a deb package;

acquiring a file path and a hash value of a file to be checked using the hash value during verification of the file out of files contained in the software package by executing a predetermined command for the software package of the software if it is determined that the software to be verified is contained in an rpm package or a deb package; and

creating verification information about the software package, the verification information including the file path and the hash value of the file acquired.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 12, 2022
From: KURA, TSUNEKO; OUCHI, SEISHI; NAKATSURU, TAKESHI; KINOSHITA, KAZUMI
To: NIPPON TELEGRAPH AND TELEPHONE CORPORATION
Reel/Frame 058627/0449 →
Continuity (1)
Related Publication 20220292224A1 · Sep 15, 2022