会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 7. 发明申请
    • Method for secure access to multiple secure networks
    • 用于安全访问多个安全网络的方法
    • US20050268336A1
    • 2005-12-01
    • US10857431
    • 2004-05-28
    • Sean Finnegan
    • Sean Finnegan
    • G06F11/30G06F12/14G06F21/00H04L9/00H04L9/32H04L29/06
    • G06F21/32G06F21/31G06F2221/2113G06F2221/2141H04L63/101H04L63/105
    • Disclosed is a method for providing secure access to multiple secure networks from a single workstation. The architecture can use multiple layers of protection to isolate applications running at different security levels. The first means of isolation is a virtual machine monitor that isolates multiple operating systems running within separate virtual machines on the host operating system. The second layer is the use of multiple user security contexts on the host operating system to isolate each virtual machine. The third level of protection is a highly secured and restricted host operating system where all unnecessary services are removed and user actions are restricted to just the virtual machine monitor using software restriction policies. Finally, the operating system and virtual machine monitor can be run from read-only media to prevent any changes by an attacker from persisting.
    • 公开了一种从单个工作站提供对多个安全网络的安全访问的方法。 该架构可以使用多层保护来隔离以不同安全级别运行的应用程序。 第一种隔离方式是一种虚拟机监视器,用于隔离在主机操作系统上的单独虚拟机内运行的多个操作系统。 第二层是在主机操作系统上使用多个用户安全上下文来隔离每个虚拟机。 第三级保护是高度安全和受限制的主机操作系统,其中所有不必要的服务被删除,用户操作仅限于使用软件限制策略的虚拟机监视器。 最后,操作系统和虚拟机监视器可以从只读介质运行,以防止攻击者持久存在任何更改。