会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • Mandatory integrity control
    • 强制诚信控制
    • US08646044B2
    • 2014-02-04
    • US11117621
    • 2005-04-28
    • Richard B. WardJeffrey HamblinPeter T. Brundrett
    • Richard B. WardJeffrey HamblinPeter T. Brundrett
    • G06F7/04
    • G06F21/6218G06F2221/2141G06F2221/2149
    • The contemplated embodiments of the invention provide a method for implementing a mandatory integrity control (MIC) system that provides access control for each and every object and subject that need access control, but in a way that allows legacy operating systems to continue with little modification. The invention provides a novel method that selects an integrity level designator for a subject, when the subject logs onto the computer system. The selected integrity level designator is then added to an existing data structure in the computer system. The existing data structure may be a part of a security descriptor stored in a system access control list of an object. The existing data structure may be a part of a list of security permissions that constitute an access token for a process executing as a subject.
    • 本发明的预期实施例提供了一种用于实现强制完整性控制(MIC)系统的方法,该系统为需要访问控制的每个对象和对象提供访问控制,但是以允许传统操作系统继续进行很少修改的方式。 本发明提供了一种当主体登录到计算机系统时为对象选择完整性级别指示符的新颖方法。 然后,将所选择的完整性级别指示符添加到计算机系统中的现有数据结构。 现有数据结构可以是存储在对象的系统访问控制列表中的安全描述符的一部分。 现有数据结构可以是构成作为主体执行的进程的访问令牌的安全许可列表的一部分。
    • 2. 发明申请
    • Mandatory integrity control
    • 强制诚信控制
    • US20060248585A1
    • 2006-11-02
    • US11117621
    • 2005-04-28
    • Richard WardJeffrey HamblinPeter Brundrett
    • Richard WardJeffrey HamblinPeter Brundrett
    • H04L9/32
    • G06F21/6218G06F2221/2141G06F2221/2149
    • The contemplated embodiments of the invention provide a method for implementing a mandatory integrity control (MIC) system that provides access control for each and every object and subject that need access control, but in a way that allows legacy operating systems to continue with little modification. The invention provides a novel method that selects an integrity level designator for a subject, when the subject logs onto the computer system. The selected integrity level designator is then added to an existing data structure in the computer system. The existing data structure may be a part of a security descriptor stored in a system access control list of an object. The existing data structure may be a part of a list of security permissions that constitute an access token for a process executing as a subject.
    • 本发明的预期实施例提供了一种用于实现强制完整性控制(MIC)系统的方法,该系统为需要访问控制的每个对象和对象提供访问控制,但是允许传统操作系统继续进行很少的修改。 本发明提供了一种当主体登录到计算机系统时为对象选择完整性级别指示符的新颖方法。 然后,将所选择的完整性级别指示符添加到计算机系统中的现有数据结构。 现有数据结构可以是存储在对象的系统访问控制列表中的安全描述符的一部分。 现有数据结构可以是构成作为主体执行的进程的访问令牌的安全许可列表的一部分。