摘要:
Techniques are disclosed to provide security for user input in which a first, host operating system is used along with a second, high assurance operating system, where the first system provides at least some of the infrastructure for the second system. Two modes are presented. In a first mode, user data is passed to the host operating system. In a second mode, user data is retained in the second operating system for the use of the second operating system or processes running on the second operating system. Transitions between the nodes can be accomplished according to hypothecated user actions such as keystroke combinations, or when the user performs an action which indicates a programmatic activation of a process running in the second operating system. Where shadow graphical elements are run by the first operating system to indicate the location of graphical elements from processes running on the second operating system, this programmatic activation may be indicated by programmatic activation of a shadow graphical element.
摘要:
Methods for maintaining the security of a secured execution environment on a system comprising said secured execution environment and a second execution environment are disclosed. A maintained current state for the secured execution environment is selected from among a group of possible states including a standard input mode state and a nexus input mode state. A flow of user input is directed according to the current state through a secure kernel of both the second environment and the secured execution environment.
摘要:
Methods for maintaining the security of a secured execution environment on a system comprising said secured execution environment and a second execution environment are disclosed. A maintained current state for the secured execution environment is selected from among a group of possible states including a standard input mode state and a nexus input mode state. A flow of user input is directed according to the current state through a secure kernel of both the second environment and the secured execution environment.
摘要:
Techniques are disclosed to provide security for user input in which a first, host operating system is used along with a second, high assurance operating system, where the first system provides at least some of the infrastructure for the second system. Two modes are presented. In a first mode, user data is passed to the host operating system. In a second mode, user data is retained in the second operating system for the use of the second operating system or processes running on the second operating system. Transitions between the nodes can be accomplished according to hypothecated user actions such as keystroke combinations, or when the user performs an action which indicates a programmatic activation of a process running in the second operating system. Where shadow graphical elements are run by the first operating system to indicate the location of graphical elements from processes running on the second operating system, this programmatic activation may be indicated by programmatic activation of a shadow graphical element.
摘要:
Techniques are disclosed to provide security for graphical user interface elements being displayed in a system in which a first, host operating system is used along with a second, high assurance operating system, where the first system provides at least some of the infrastructure for the second system. Graphical user interface elements associated with the high-assurance operating system are prevented from being obscured and from any partial transparency. Additionally, a piece of secret information is stored which can be displayed upon command by graphical user interface elements associated with the high-assurance operating system. Coordinating certain elements of the display of all graphical user interface elements associated with the high assurance operating system also helps to identify legitimate elements associated with the high assurance operating system, as opposed to impostor elements which are not. Where a windowing system is used, public title information is furnished to a host operating system windowing system to identify a window owned by a process running on a high-assurance operating system. Private title information associated with the same window is used only in the high assurance operating system.
摘要:
The claimed subject matter provides a system or method for managing software changes. An exemplary method comprises creating a reset boot loader, a last known good (LKG) boot loader, and a current boot loader, then pointing the reset boot loader, LKG boot loader, and current boot loader to a parent virtual hard disk (VHD) containing a default master image. An operation to perform is determined, and a service partition is booted into. The LKG boot loader or current boot loader is pointed to a child VHD loaded with another desired image based on the operation selected, and the system is rebooted into the parent VHD or child VHD pointed to by the current boot loader.
摘要:
A retaining formation defined on a brake lever of an air disc brake includes a push fit/snap fit connection for releasably securing a push rod to a brake lever. The retaining formation can include a pinned connection and a ball and socket joint, and a main axis of the pinned connection is coincident with a center of rotation of the ball and socket joint. The retaining formation can include a concave formation on one of the push rod and the brake lever and a corresponding convex formation on the other of the push rod and the brake lever. The concave formation at least partially surrounds the convex formation to prevent axial separation of the push rod and the brake lever. A method of assembling a brake subassembly includes the steps of assembling a push rod and a brake lever including a retaining formation such that at least a portion of the retaining formation deforms during assembly and resiles when the push rod is assembled to the brake lever to provide a snap fit connection therebetween. Another method of manufacturing a retaining formation includes the steps of providing one of a push rod and a brake lever with a concave formation, providing the other of the push rod and the brake lever with a convex formation able to receive the concave formation, assembling the concave formation and the convex formation, mechanically working the one of the push rod and the brake lever with the concave formation such that the concave formation at least partially surrounds the convex formation to prevent axial separation of the push rod and the brake lever.
摘要:
A disc brake includes a brake disc, a sliding caliper, a single piston, and a brake pad carrier comprising a leading part and a trailing part. The brake pad carrier includes mounting features for securing the brake pad carrier to an associated structure of a vehicle. The mounting features define a mounting side and a non-mounting side of the brake. A mounting side brake pad comprises mounting side friction material and a non-mounting side brake pad comprising non-mounting side friction material. The center of pressure of the non-mounting side friction material is circumferentially aligned with the piston and the center of pressure of the mounting side friction material is offset in relation to the piston towards the leading part of the brake pad carrier.
摘要:
Processes of making slightly sloped roofing members/products (30, 130) for drainage of essentially flat roofs and the products (e.g., sloped roofing members) produced thereby are provided. Some of the processes comprise feeding a series of mold members (50, 150) in a conveyance direction (26) toward a laminator (22) wherein the sloped roofing members are cured. In various embodiments such processes comprise feeding a bottom facer (42) in the conveyance direction toward the laminator (22); depositing a foam-forming mixture (46) on the bottom facer (42); feeding a top facer (44) in the conveyance direction toward the laminator whereby the foam-forming mixture is interposed between the bottom facer (42) and the top facer (44); feeding the series of mold members (50, 150) in the conveyance direction toward the laminator (22) and beneath the bottom facer (44); and curing the foam-forming mixture in the laminator to form a solidified web comprising the sloped roofing member (28, 128). Each of the mold members (50, 150) is configured to impart at least one non-orthogonally sloped surface to a corresponding sloped roofing member.
摘要:
A method of applying a parking brake mechanism for a foundation brake includes several steps. The parking brake mechanism incorporates an electric actuator, an extensible device drivably connected to the electric actuator, and a resilient device arranged to act on the extensible device and maintain a desired level of force to be applied by the parking brake mechanism in the event of contraction of components of the foundation brake. The method includes the steps of signaling application of a service brake actuator to apply the brake, signaling driving of a first electric actuator to cause the extensible device to be able to retain the foundation brake in the brake applied position achieved by the service brake actuator, signaling the release of the service brake actuator, signaling driving of a second electric actuator to further compress the resilient element, monitoring a characteristic of the brake to determine if a desired force has been applied by the parking brake mechanism, and signaling driving of the electric motor to stop once the desired force has been reached.