Invention Grant
US09489539B2 Allowing first module of computer code received from vendor to make use of service provided by second module while ensuring security of system 有权
允许从供应商接收的计算机代码的第一模块利用第二模块提供的服务,同时确保系统的安全

Allowing first module of computer code received from vendor to make use of service provided by second module while ensuring security of system
Abstract:
A system for integrating modules of computer code may include a sandbox validator for receiving a first module and verifying that the first module complies with one or more sandbox constraints. A computing device may execute the first module within a runtime environment. A module integrator may operate within the runtime environment for receiving a request from the first module to access a service provided by a second module and only allowing the first module to access the service when the first module is authorized to access the service according to a service authorization table. The sandbox validator may ensure the first module correctly identifies itself when requesting a service provide by another module and that the first module includes runtime policing functions for non-deterministic operations. A service authorizer may generate an authorization policy for the first module, which is sent to the computing device along with the first module.
Information query
Patent Agency Ranking
0/0