Patents Assigned to Owl Computing Technologies, Inc.
  • Patent number: 8516580
    Abstract: A method and system for testing a file (or packet) formed from a sequential series of information units, each information unit within a predetermined set of information units, e.g., each information unit may correspond to a character within the ASCII character set. An information unit-pair entropy density measurement is calculated for the received file using a probability matrix. The probability matrix tabulates the probabilities of occurrence for each possible sequential pair of information units of the predetermined set of information units. The computed information unit-pair entropy density measurement is compared with a threshold associated with an expected file type to determine whether the received file is of the expected file type or of an unexpected file type. The probability matrix may optionally be generated from the received file prior to calculating the density thereof. The probability matrix may optionally be predetermined based on the expected file type.
    Type: Grant
    Filed: April 27, 2011
    Date of Patent: August 20, 2013
    Assignee: OWL Computing Technologies, Inc.
    Inventor: Jeffrey Menoher
  • Patent number: 8498206
    Abstract: Network interface circuitry for a secure one-way data transfer from a sender's computer (“Send Node”) to a receiver's computer (“Receive Node”) over a data link, such as an optical fiber or shielded twisted pair copper wire communication cable, comprising send-only network interface circuitry for transmitting data from the Send Node to the data link, and receive-only network interface circuitry for receiving the data from the data link and transmitting the received data to the Receive Node, wherein the send-only network interface circuitry is configured not to receive any data from the data link, and the receive-only network interface circuitry is configured not to send any data to the data link. The network interface circuitry may use various interface means such as PCI interface, USB connection, FireWire connection, or serial port connection for coupling to the Send Node and the Receive Node.
    Type: Grant
    Filed: October 24, 2011
    Date of Patent: July 30, 2013
    Assignee: Owl Computing Technologies, Inc.
    Inventor: Ronald Mraz
  • Publication number: 20130152206
    Abstract: A communications device for ensuring secure data transfer provided having an interface device for controlling data transfer, an integrated circuit coupled to the interface device and having a processor, a non-volatile memory for storing at least program code for the processor, a volatile memory, an input pin and an output pin; and an electrical conductor which electrically connects the input pin and the output pin. The electrical conductor passes through an external portion of the enclosure, e.g., a slot, which allows a user to easily sever the electrical conductor. In operation, a portion of the program code detects when the electrical conductor is severed and causes the program code in the non-volatile memory to be erased, data transfer via the interface device to be disabled, and power to the integrated circuit cut off to ensure that all information in volatile memory is erased.
    Type: Application
    Filed: December 7, 2011
    Publication date: June 13, 2013
    Applicant: OWL COMPUTING TECHNOLOGIES, INC.
    Inventor: Steven Staubly
  • Publication number: 20130097283
    Abstract: A bilateral data transfer system comprising a first node, a second node, a first one-way link for unidirectional transfer of first data from the first node to the second node, and a second one-way link for unidirectional transfer of second data from the second node to the first node, wherein the unidirectional transfer of the first data across the first one-way link and the unidirectional transfer of the second data across the second one-way link are independently administered by the bilateral data transfer system. Under such bilateral data transfer system, each of the one-way data links may be subject to separately administered security restrictions and data filtering processes, enabling secure bilateral communications across different network security domains.
    Type: Application
    Filed: December 5, 2012
    Publication date: April 18, 2013
    Applicant: OWL COMPUTING TECHNOLOGIES, INC.
    Inventor: OWL COMPUTING TECHNOLOGIES, INC.
  • Patent number: 8352450
    Abstract: A database updating application for updating through a one-way data link a remote database in accordance with a change in a reference database is disclosed, which comprises a database trigger client associated with the reference database for generating a database update message in the form of a file or a data packet corresponding to the change in the reference database and sending the database update message to a send node interconnected to a receive node by the one-way data link, and a database trigger server associated with the remote database for receiving the database update message transmitted across the one-way data link and replicating the change on the remote database in accordance with the database update message. The present invention provides database update through a one-way data link that may be implemented efficiently in real time and with a mechanism for verifying the integrity and operability of the one-way data link for the purpose of database update.
    Type: Grant
    Filed: April 19, 2007
    Date of Patent: January 8, 2013
    Assignee: Owl Computing Technologies, Inc.
    Inventors: Ronald Mraz, James Hope, Andrew Holmes
  • Patent number: 8353022
    Abstract: A bilateral data transfer system comprising a first node, a second node, a first one-way link for unidirectional transfer of first data from the first node to the second node, and a second one-way link for unidirectional transfer of second data from the second node to the first node, wherein the unidirectional transfer of the first data across the first one-way link and the unidirectional transfer of the second data across the second one-way link are independently administered by the bilateral data transfer system. Under such bilateral data transfer system, each of the one-way data links may be subject to separately administered security restrictions and data filtering processes. Hence, it enables secure bilateral communications across different network security domains.
    Type: Grant
    Filed: June 4, 2012
    Date of Patent: January 8, 2013
    Assignee: Owl Computing Technologies, Inc.
    Inventors: Jeffrey Charles Menoher, James Hope, Ronald Mraz
  • Publication number: 20120331097
    Abstract: A bilateral data transfer system comprising a first node, a second node, a first one-way link for unidirectional transfer of first data from the first node to the second node, and a second one-way link for unidirectional transfer of second data from the second node to the first node, wherein the unidirectional transfer of the first data across the first one-way link and the unidirectional transfer of the second data across the second one-way link are independently administered by the bilateral data transfer system. Under such bilateral data transfer system, each of the one-way data links may be subject to separately administered security restrictions and data filtering processes. Hence, it enables secure bilateral communications across different network security domains.
    Type: Application
    Filed: June 4, 2012
    Publication date: December 27, 2012
    Applicant: OWL COMPUTING TECHNOLOGIES, INC.
    Inventors: Jeffrey Charles Menoher, James Hope, Ronald Mraz
  • Publication number: 20120278884
    Abstract: A method and system for testing a file (or packet) formed from a sequential series of information units, each information unit within a predetermined set of information units, e.g., each information unit may correspond to a character within the ASCII character set. An information unit-pair entropy density measurement is calculated for the received file using a probability matrix. The probability matrix tabulates the probabilities of occurrence for each possible sequential pair of information units of the predetermined set of information units. The computed information unit-pair entropy density measurement is compared with a threshold associated with an expected file type to determine whether the received file is of the expected file type or of an unexpected file type. The probability matrix may optionally be generated from the received file prior to calculating the density thereof. The probability matrix may optionally be predetermined based on the expected file type.
    Type: Application
    Filed: April 27, 2011
    Publication date: November 1, 2012
    Applicant: OWL COMPUTING TECHNOLOGIES, INC.
    Inventor: Jeffrey Menoher
  • Patent number: 8266689
    Abstract: A bilateral data transfer system comprising a first node, a second node, a first one-way link for unidirectional transfer of first data from the first node to the second node, and a second one-way link for unidirectional transfer of second data from the second node to the first node, wherein the unidirectional transfer of the first data across the first one-way link and the unidirectional transfer of the second data across the second one-way link are independently administered by the bilateral data transfer system. Under such bilateral data transfer system, each of the one-way data links may be subject to separately administered security restrictions and data filtering processes. Hence, it enables secure bilateral communications across different network security domains.
    Type: Grant
    Filed: June 24, 2011
    Date of Patent: September 11, 2012
    Assignee: Owl Computing Technologies, Inc.
    Inventors: Jeffrey Charles Menoher, James Hope, Ronald Mraz
  • Publication number: 20120162697
    Abstract: A system for printing includes one or more printers, a send platform, a print spooling platform coupled to the one or more printers, and a one-way data link enforcing unidirectional data transfer from the send platform to the print spooling platform, wherein the send platform is configured to receive a print job, convert the print job into a print file in a printable format for the one or more printers, and send the print file to the print spooling platform across the one-way data link, and the print spooling platform is configured to receive the print file from the one-way data link, control spooling of the print file for the one or more printers, and send the print file to the one or more printers, and wherein the one or more printers cannot communicate to the send platform.
    Type: Application
    Filed: December 22, 2010
    Publication date: June 28, 2012
    Applicant: OWL COMPUTING TECHNOLOGIES, INC.
    Inventors: Ronald Mraz, James Hope
  • Publication number: 20120151075
    Abstract: A data transfer application for concurrent transfer of data streams based on two or more transport layer protocols via a single one-way data link. The present invention provides a great degree of routing flexibility by providing seamless network connectivity under a plurality of transport layer protocols, such as TCP and UDP, between multiple source and destination platforms over a single one-way data link.
    Type: Application
    Filed: February 8, 2012
    Publication date: June 14, 2012
    Applicant: OWL COMPUTING TECHNOLOGIES, INC.
    Inventors: Ronald MRAZ, James HOPE
  • Patent number: 8139581
    Abstract: A data transfer application for concurrent transfer of data streams based on two or more transport layer protocols via a single one-way data link. The present invention provides a great degree of routing flexibility by providing seamless network connectivity under a plurality of transport layer protocols, such as TCP and UDP, between multiple source and destination platforms over a single one-way data link.
    Type: Grant
    Filed: April 19, 2007
    Date of Patent: March 20, 2012
    Assignee: Owl Computing Technologies, Inc.
    Inventors: Ronald Mraz, James Hope
  • Publication number: 20120042357
    Abstract: Network interface circuitry for a secure one-way data transfer from a sender's computer (“Send Node”) to a receiver's computer (“Receive Node”) over a data link, such as an optical fiber or shielded twisted pair copper wire communication cable, comprising send-only network interface circuitry for transmitting data from the Send Node to the data link, and receive-only network interface circuitry for receiving the data from the data link and transmitting the received data to the Receive Node, wherein the send-only network interface circuitry is configured not to receive any data from the data link, and the receive-only network interface circuitry is configured not to send any data to the data link. The network interface circuitry may use various interface means such as PCI interface, USB connection, FireWire connection, or serial port connection for coupling to the Send Node and the Receive Node.
    Type: Application
    Filed: October 24, 2011
    Publication date: February 16, 2012
    Applicant: OWL COMPUTING TECHNOLOGIES, INC.
    Inventor: Ronald MRAZ
  • Publication number: 20120017079
    Abstract: An apparatus for relaying a hashed message from a first node to a second node, comprising an inlet interface for receiving a message from the first node, a hash number calculator for hashing the message from the inlet interface, an outlet interface for sending the hashed message to the second node, a first one-way data link for unidirectional transfer from the inlet interface to the hash number calculator, and a second one-way data link for unidirectional transfer from the hash number calculator to the outlet interface, is provided. While the apparatus is capable of bidirectional communications with either or both of the first and second nodes through the respective interfaces, the unidirectionality of data flow through the apparatus is strictly enforced by the hardware of the apparatus.
    Type: Application
    Filed: July 14, 2011
    Publication date: January 19, 2012
    Applicant: OWL COMPUTING TECHNOLOGIES, INC.
    Inventors: Ronald Mraz, James Hope, Jeffrey Menoher
  • Patent number: 8068415
    Abstract: Network interface circuitry for a secure one-way data transfer from a sender's computer (“Send Node”) to a receiver's computer (“Receive Node”) over a data link, such as an optical fiber or shielded twisted pair copper wire communication cable, comprising send-only network interface circuitry for transmitting data from the Send Node to the data link, and receive-only network interface circuitry for receiving the data from the data link and transmitting the received data to the Receive Node, wherein the send-only network interface circuitry is configured not to receive any data from the data link, and the receive-only network interface circuitry is configured not to send any data to the data link. The network interface circuitry may use various interface means such as PCI interface, USB connection, FireWire connection, or serial port connection for coupling to the Send Node and the Receive Node.
    Type: Grant
    Filed: April 18, 2007
    Date of Patent: November 29, 2011
    Assignee: Owl Computing Technologies, Inc.
    Inventor: Ronald Mraz
  • Publication number: 20110252116
    Abstract: Bilateral communication using multiple one-way data links for data transfers in opposite directions, each of which is subject to separately administered security restrictions and data filtering processes. Operating together, they enable secure bilateral communications across different network security domains.
    Type: Application
    Filed: June 24, 2011
    Publication date: October 13, 2011
    Applicant: OWL COMPUTING TECHNOLOGIES, INC.
    Inventors: Jeffrey Charles Menoher, James Hope, Ronald Mraz
  • Patent number: 7992209
    Abstract: A bilateral data transfer system comprising a first node, a second node, a first one-way link for unidirectional transfer of first data from the first node to the second node, and a second one-way link for unidirectional transfer of second data from the second node to the first node, wherein the unidirectional transfer of the first data across the first one-way link and the unidirectional transfer of the second data across the second one-way link are independently administered by the bilateral data transfer system. Under such bilateral data transfer system, each of the one-way data links may be subject to separately administered security restrictions and data filtering processes. Hence, it enables secure bilateral communications across different network security domains.
    Type: Grant
    Filed: July 19, 2007
    Date of Patent: August 2, 2011
    Assignee: Owl Computing Technologies, Inc.
    Inventors: Jeffrey Charles Menoher, James Hope, Ronald Mraz
  • Patent number: 7941526
    Abstract: A special syslog daemon on a send node, wherein the send node is connected to a receive node by a one-way data link, the special syslog daemon configured to receive a syslog message from a syslog sender, insert a portion of IP information of the syslog sender in the body of the received syslog message and route the resulting syslog message to the one-way data link so that the resulting syslog message can be sent through the one-way data link to a syslog receiver communicatively coupled to the receive node. The present invention resolves the potential conflict between syslog and one-way data transfer applications that are configured to remove IP information from data prior to its passage through a one-way data link, thereby leading to a further enhancement of network security through their combination.
    Type: Grant
    Filed: April 19, 2007
    Date of Patent: May 10, 2011
    Assignee: Owl Computing Technologies, Inc.
    Inventors: James Hope, Ronald Mraz, Andrew Holmes
  • Patent number: 7675867
    Abstract: Embodiments of the present invention are directed to a one-way data transfer system with built-in data verification mechanism, comprising three nodes (Send Node, Receive Node, and Feedback Node) wherein (1) the three nodes are interconnected with each other by a one-way data link, and (2) the Feedback Node is designed solely for processing and relaying data verification information from the Receive Node to the Send Node. In these embodiments, the Send Node is capable of verifying the status of data it transferred to the Receive Node over a one-way data link without sacrificing the unidirectionality of data flow in the system and thereby compromising the level of security provided by use of one-way data links.
    Type: Grant
    Filed: April 18, 2007
    Date of Patent: March 9, 2010
    Assignee: Owl Computing Technologies, Inc.
    Inventors: Ronald Mraz, James Hope, Jeffrey Menoher, Dennis P. Mirante