Patents by Inventor William E. Boebert
William E. Boebert has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20110296164Abstract: A system and method for providing secure network services. A secure computer including a processor, a memory, and a secure operating system is discussed. The secure operating system includes an operational kernel and an administrative kernel. The operational kernel includes a Type Enforcement security mechanism for restricting execution of files stored in the memory by the processor. The execution restrictions placed on files in the memory of the secure computer can only be modified from within the administrative kernel.Type: ApplicationFiled: May 28, 2010Publication date: December 1, 2011Applicant: McAfee, Inc.Inventors: William E. Boebert, Clyde O. Rogers, Glenn Andreas, Scott W. Hammond, Mark P. Gooderum
-
Patent number: 7730299Abstract: A system and method for the secure transfer of data between a workstation connected to a private network and a remote computer connected to an unsecured network. A secure computer is inserted into the private network to serve as the gateway to the unsecured network and a client subsystem is added to the workstation in order to control the transfer of data from the workstation to the secure computer. The secure computer includes a private network interface connected to the private network, an unsecured network interface connected to the unsecured network, wherein the unsecured network interface includes means for encrypting data to be transferred from the first workstation to the remote computer and a server function for transferring data between the private network interface and the unsecured network interface.Type: GrantFiled: January 30, 2007Date of Patent: June 1, 2010Assignee: Secure Computing, LLCInventors: William E. Boebert, Clyde O. Rogers, Glenn Andreas, Scott W. Hammond, Mark P. Gooderum
-
Patent number: 7181613Abstract: A system and method for the secure transfer of data between a workstation connected to a private network and a remote computer connected to an unsecured network. A secure computer is inserted into the private network to serve as the gateway to the unsecured network and a client subsystem is added to the workstation in order to control the transfer of data from the workstation to the secure computer. The secure computer includes a private network interface connected to the private network, an unsecured network interface connected to the unsecured network, wherein the unsecured network interface includes means for encrypting data to be transferred from the first workstation to the remote computer and a server function for transferring data between the private network interface and the unsecured network interface.Type: GrantFiled: May 26, 2004Date of Patent: February 20, 2007Assignee: Secure Computing CorporationInventors: William E. Boebert, Clyde O. Rogers, Glenn Andreas, Scott W. Hammond, Mark P. Gooderum
-
Publication number: 20040230791Abstract: A system and method for the secure transfer of data between a workstation connected to a private network and a remote computer connected to an unsecured network. A secure computer is inserted into the private network to serve as the gateway to the unsecured network and a client subsystem is added to the workstation in order to control the transfer of data from the workstation to the secure computer. The secure computer includes a private network interface connected to the private network, an unsecured network interface connected to the unsecured network, wherein the unsecured network interface includes means for encrypting data to be transferred from the first workstation to the remote computer and a server function for transferring data between the private network interface and the unsecured network interface.Type: ApplicationFiled: May 26, 2004Publication date: November 18, 2004Applicant: Secure Computing Corporation.Inventors: William E. Boebert, Clyde O. Rogers, Glenn Andreas, Scott W. Hammond, Mark P. Gooderum
-
Patent number: 6772332Abstract: A system and method for the secure transfer of data between a workstation connected to a private network and a remote computer connected to an unsecured network. A secure computer is inserted into the private network to serve as the gateway to the unsecured network and a client subsystem is added to the workstation in order to control the transfer of data from the workstation to the secure computer. The secure computer includes a private network interface connected to the private network, an unsecured network interface connected to the unsecured network, wherein the unsecured network interface includes means for encrypting data to be transferred from the first workstation to the remote computer and a server function for transferring data between the private network interface and the unsecured network interface.Type: GrantFiled: December 23, 1998Date of Patent: August 3, 2004Assignee: Secure Computing CorporationInventors: William E. Boebert, Clyde O. Rogers, Glenn Andreas, Scott W. Hammond, Mark P. Gooderum
-
Patent number: 6144934Abstract: An electronic message filtering system and method is described. A message is received as input to the filter and decomposed into a set of components. The set of components is then processed through a pattern matching algorithm to determine if the message contents contains patterns inherent in a specified pattern, such as a natural language. The results of the pattern match analysis are output by the filter.Type: GrantFiled: September 18, 1996Date of Patent: November 7, 2000Assignee: Secure Computing CorporationInventors: Edward B. Stockwell, William E. Boebert, Heidi A. Vanyo
-
Patent number: 5864683Abstract: A system and method for the secure transfer of data between a workstation connected to a private network and a remote computer connected to an unsecured network. A secure computer is inserted into the private network to serve as the gateway to the unsecured network and a client subsystem is added to the workstation in order to control the transfer of data from the workstation to the secure computer. The secure computer includes a private network interface connected to the private network, an unsecured network interface connected to the unsecured network, wherein the unsecured network interface includes means for encrypting data to be transferred from the first workstation to the remote computer, a server function for transferring data between the private network interface and the unsecured network interface and a filter function for filtering data transferred between the remote computer and the workstation.Type: GrantFiled: October 12, 1994Date of Patent: January 26, 1999Assignee: Secure Computing CorporartionInventors: William E. Boebert, Clyde O. Rogers, Glenn Andreas, Scott W. Hammond, Mark P. Gooderum
-
Patent number: 5822435Abstract: A method and apparatus for ensuring secure communication over an unsecured communications medium between a user working on an unsecured workstation or computer and a host computer. A secure user interface is created by inserting a trusted path subsystem between input/output devices to the workstation and the workstation itself. Data transferred from the input/output devices is intercepted, encrypted and transmitted in packets to the host computer. Packets of screen display data from the host computer are decrypted and presented within a user-defined screen overlay.Type: GrantFiled: September 18, 1996Date of Patent: October 13, 1998Assignee: Secure Computing CorporationInventors: William E. Boebert, Mark H. Hanson, Thomas R. Markham
-
Patent number: 5596718Abstract: A method and apparatus for ensuring secure communication over an unsecured communications medium between a user working on an unsecured workstation or computer and a host computer. A secure user interface is created by inserting a trusted path subsystem between input/output devices to the workstation and the workstation itself. Data transferred from the input/output devices is intercepted, encrypted and transmitted in packets to the host computer. Packets of screen display data from the host computer are decrypted and presented within a user-defined screen overlay.Type: GrantFiled: July 10, 1992Date of Patent: January 21, 1997Assignee: Secure Computing CorporationInventors: William E. Boebert, Mark H. Hanson, Thomas R. Markham
-
Patent number: 5502766Abstract: A data communication system providing for the secure transfer and sharing of data via a local area network and/or a wide area network. The system includes a secure processing unit which communicates with a personal keying device and a crypto media controller attached to a user's Workstation. The communication between these processing elements generates a variety of data elements including keys, identifiers, and attributes. The data elements are used to identify and authenticate the user, assign user security access rights and privileges, and assign media and device attributes to a data access device according to a predefined security policy. The data elements are manipulated, combined, protected, and distributed through the network to the appropriate data access devices, which prevents the user from obtaining unauthorized data.Type: GrantFiled: October 26, 1993Date of Patent: March 26, 1996Assignee: Secure Computing CorporationInventors: William E. Boebert, Thomas R. Markham, Robert A. Olmsted
-
Patent number: 5499297Abstract: A system and method for identifying and authenticating users and for controlling the access of those users to privileged instructions within a data enclave. The data enclave includes a plurality of controllers, such as workstations, connected over a network to a security server; each data enclave is assigned a cryptographic key. A personal keying device having an encrypted user unique identifier is assigned to each user; provisions are made for temporarily connecting the personal keying device to one of the controllers and for transmitting an encrypted message, including the user unique identifier and the last countersign, to the security server to authenticate the user and establish his/her access rights. A mechanism for updating the countersign is provided so that trusted path communications can be established between the user and the security server.Type: GrantFiled: December 20, 1994Date of Patent: March 12, 1996Assignee: Secure Computing CorporationInventor: William E. Boebert
-
Patent number: 5276735Abstract: A data communication system providing for the secure transfer and sharing of data via a local area network and/or a wide area network. The system includes a secure processing unit which communicates with a personal keying device and a crypto media controller attached to a user's Workstation. The communication between these processing elements generates a variety of data elements including keys, identifiers, and attributes. The data elements are used to identify and authenticate the user, assign user security access rights and privileges, and assign media and device attributes to a data access device according to a predefined security policy. The data elements are manipulated, combined, protected, and distributed through the network to the appropriate data access devices, which prevents the user from obtaining unauthorized data.Type: GrantFiled: April 17, 1992Date of Patent: January 4, 1994Assignee: Secure Computing CorporationInventors: William E. Boebert, Thomas R. Markham, Robert A. Olmsted
-
Patent number: 4713753Abstract: Means and methods of securing protected system files in a data processing system are disclosed, wherein the information determining access rights of system users to the protected systems files remains at all times within a secure processor. Provision is also made for allowing the display or labeling of protected data files only when markings consistent with the security level of such files are also displayed or included in the label. Furthermore, provision is also made for limiting the access rights of users to protected system files based on a comparison between the formats associated with said files and the function or subsystem performing operations on behalf of the users.Type: GrantFiled: February 21, 1985Date of Patent: December 15, 1987Assignee: Honeywell Inc.Inventors: William E. Boebert, Richard Y. Kain
-
Patent number: 4701840Abstract: A data processing system having an architecture for protecting selected system files. The data processing unit includes a secure processing unit operating in a manner independent of the operation of the remainder of the data processing unit for storing and comparing system file attributes and user entity attributes. The comparison of attributes is performed in accordance with a table in the secure processing unit containing the security context. The secure processing unit alone is able to manipulate special data groups called distinguished data objects. The secure processing unit also manipulates a data object identifier that isolates the identification of the system files from the actual memory storage locations. Apparatus and method are also disclosed for providing secure creation of protected system files by in part eliminates interruption, the data processing system in the process. The architecture also facilitates secure transfer of files between data processing systems.Type: GrantFiled: June 20, 1986Date of Patent: October 20, 1987Assignee: Honeywell Inc.Inventors: William E. Boebert, Richard Y. Kain
-
Patent number: 4621321Abstract: A data processing system having an architecture for protecting selected system files. The data processing unit includes a secure processing unit operating in a manner independent of the operation of the remainder of the data processing unit for storing and comparing system file attributes and user entity attributes. The comparison of attributes is performed in accordance with a table in the secure processing unit containing the security context. The secure processing unit alone is able to manipulate special data groups called distinguished data objects. The secure processing unti also manipulates a data object identifier that isolates the indentification of the system files from the actual memory storage locations. Apparatus and method are also disclosed for providing secure creation of protected system files that in part eliminates interruption of the data processing system in the process. The architecture also facilitates secure transfer of files between data processing systems.Type: GrantFiled: February 16, 1984Date of Patent: November 4, 1986Assignee: Honeywell Inc.Inventors: William E. Boebert, Richard Y. Kain