IP Library Granted Patent US 9,077,724
Granted Patent B2
US 9,077,724 · App. 13/330,590 · Granted Jul 7, 2015

Systems and methods for analyzing application security policies

Inventors: Mark Moriconi (Atherton, CA); Ken Yagen (San Carlos, CA)
Assignee: Mark Moriconi
H04L63/102H04L63/20
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,077,724
App. No.
13/330,590
Granted
Jul 7, 2015
Kind
B2
Abstract

A system and method for analyzing application security policies is provided. One or more application security policies are retrieved. An optimized policy is then generated utilizing the one or more application security policies. One or more queries related to the one or more application security policies are received. The one or more queries are decomposed. The one or more decomposed queries are then processed utilizing the optimized policy.

Claims (12)

1. A system for analyzing a software application security policy, the system comprising:

an aggregation module in communication with a computing device, the computing device in communication with an application security policy, the application security policy specifying at least in part whether a particular subject can access a particular resource;

the aggregation module retrieving the application security policy;

an indexing engine in communication with the aggregation module, the indexing engine generating an indexed application security policy utilizing the application security policy;

a query preprocessor module in communication with the indexing engine, the query preprocessor module decomposing a query; and

an analysis engine in communication with the query preprocessor module, the analysis engine processing the decomposed query utilizing the indexed application security policy.

2. The system recited in claim 1 , wherein the application security policy comprises structured and unstructured data.

3. The system recited in claim 1 , further comprising a transformation module in communication with the aggregation module, the transformation module transforming the application security policy into a common format.

4. The system recited in claim 1 , further comprising a vocabulary engine in communication with the query preprocessor module, the vocabulary engine associating one or more objects with a common object.

5. The system recited in claim 4 , wherein each of the one or more objects comprises at least one name.

6. The system recited in claim 1 , wherein the application security policy comprises structured data.

7. The system recited in claim 1 , wherein the application security policy comprises unstructured data.

Assignments (4)
NOTICE OF ASSIGNMENT Recorded Jun 7, 2013
From: MORICONI, MARK
To: ORACLE INTERNATIONAL CORPORATION
Reel/Frame 030574/0882 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 21, 2012
From: MORICONI, MARK; YAGEN, KEN
To: SELYTIX, INC.
Reel/Frame 029007/0327 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 21, 2012
From: SELYTIX, INC.
To: MORICONI, MARK
Reel/Frame 029007/0346 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 21, 2012
From: MORICONI, MARK
To: MARK MORICONI LLC
Reel/Frame 029007/0357 →
Continuity (5)
Continuation 11360122 · Feb 23, 2006
Provisional Application 60655833 · Feb 23, 2005
Provisional Application 60655794 · Feb 23, 2005
Provisional Application 60655855 · Feb 23, 2005
Related Publication 20120124643A1 · May 17, 2012