发明申请
- 专利标题: DOMAIN BASED ISOLATION OF OBJECTS
- 专利标题(中): 基于域的分离对象
-
申请号: US13006621申请日: 2011-01-14
-
公开(公告)号: US20120185510A1公开(公告)日: 2012-07-19
- 发明人: Saurabh Desai , George Mathew Koikara , Pruthvi Panyam Nataraj , Guha Prasad Venkataraman , Vidya Ranganathan
- 申请人: Saurabh Desai , George Mathew Koikara , Pruthvi Panyam Nataraj , Guha Prasad Venkataraman , Vidya Ranganathan
- 申请人地址: US NY Armonk
- 专利权人: International Business Machines Corporation
- 当前专利权人: International Business Machines Corporation
- 当前专利权人地址: US NY Armonk
- 主分类号: G06F17/30
- IPC分类号: G06F17/30
摘要:
Functionality can be implemented in an operating system to increase the granularity of isolation for objects. A domain can be defined to represent each of different entities (e.g., different departments or work groups). User identifiers and/or user credentials can be associated with the appropriate domain or domains. An administrator can then define a set of rules that govern operation(s) that can be performed on the objects based on the domains. Processes running on a system will inherit the domains of a user account logged into the system. When a process running on the system attempts to perform an operation on an object, an operating system process evaluates the domain isolation rules with an identifier of the object and a domain identifier to determine whether the operation is permitted to proceed.
公开/授权文献
- US08429191B2 Domain based isolation of objects 公开/授权日:2013-04-23
信息查询