发明授权
- 专利标题: System and method for file system mandatory access control
- 专利标题(中): 文件系统强制访问控制的系统和方法
-
申请号: US09896019申请日: 2001-06-29
-
公开(公告)号: US07962950B2公开(公告)日: 2011-06-14
- 发明人: Tse Huong Choo , Scott Alan Leerssen , Joubert Berger
- 申请人: Tse Huong Choo , Scott Alan Leerssen , Joubert Berger
- 申请人地址: US TX Houston
- 专利权人: Hewlett-Packard Development Company, L.P.
- 当前专利权人: Hewlett-Packard Development Company, L.P.
- 当前专利权人地址: US TX Houston
- 主分类号: G06F17/30
- IPC分类号: G06F17/30
摘要:
In one embodiment, the present invention is related to a computer system including compartments implemented on an operating system. A database contains access rules with the access rules defining which compartments are authorized to access particular file resources. A kernel module receives a system call to access a file from a user space application belonging to a compartment. A security module determines whether the user space application is authorized to access the file utilizing access rules stored in the database.
公开/授权文献
信息查询