-
公开(公告)号:US20220027179A1
公开(公告)日:2022-01-27
申请号:US16938933
申请日:2020-07-25
申请人: Unisys Corporation
摘要: The present disclosure relates generally to computer architecture and infrastructure for guest operating systems executing on a host operating system. A method of creating a guest-native executable includes receiving, by a host operating system, a call from a guest operating system to construct an executable from a guest-native source; creating an ecosystem for the guest-native source in a secure sandbox running on a host operating system; receiving the guest-native source; and executing the guest-native source in the ecosystem on the host operating system.
-
公开(公告)号:US20220027485A1
公开(公告)日:2022-01-27
申请号:US16938932
申请日:2020-07-25
申请人: Unisys Corporation
IPC分类号: G06F21/62 , G06F9/4401
摘要: The present disclosure relates generally to computer architecture and infrastructure for guest operating systems executing on a host operating system. According to one embodiment, a method of allowing root file access includes receiving a request from a guest operating system to have root file access in a host operating system; determining, by the host operating system, if the request is asking for information relevant to the guest operating system itself, and if the request is asking for information that has the same credentials as the request; and if the information is relevant to the guest operating system itself and the information has the same credentials as the request, then providing a secure path to the relevant root file system on the host operating system.
-
公开(公告)号:US20220027458A1
公开(公告)日:2022-01-27
申请号:US16938931
申请日:2020-07-25
申请人: Unisys Corporation
摘要: The present disclosure relates generally to computer architecture and infrastructure for guest operating systems executing on a host operating system. A method of compiling and executing a new program in a secure sandbox. The method includes receiving, by a host operating system, a request from a guest operating system to invoke an execution environment in a secure sandbox on a host operating system; and execute the execution environment in the secure sandbox. The user can use the execution environment in the secure sand box from a guest operating system to compile and execute the new program on the host operating system.
-
公开(公告)号:US20220027220A1
公开(公告)日:2022-01-27
申请号:US16938930
申请日:2020-07-25
申请人: Unisys Corporation
IPC分类号: G06F9/54
摘要: The present disclosure relates generally to computer architecture and infrastructure for guest operating systems executing on a host operating system. A method of invoking a native process as a called procedure, the method including receiving, by a host operating system, a request to invoke a native process as a called procedure form a guest operating system; loading the native process executable into a secure sandbox running on the host operating system; and transforming data from the native process into a representation appropriate for the called the procedure in the host operating environment.
-
公开(公告)号:US20220027454A1
公开(公告)日:2022-01-27
申请号:US16938928
申请日:2020-07-25
申请人: Unisys Corporation
IPC分类号: G06F21/45 , G06F21/53 , G06F21/60 , G06F9/455 , G06F16/245
摘要: The present disclosure relates generally to computer architecture and infrastructure for guest operating systems executing on a host operating system. A method of authenticating and authorizing a user in an emulated computing environment is disclosed. The method includes receiving a request by a user operating on a guest operating system and having user credentials to invoke a process in a secure sandbox on a host operating system; searching a pool of credentials for the user credentials in the host operating system; associating the user credentials with the process such that all services running on a guest operating system have the same credentials as a host operating system; and after the process has completed, returning the user credentials to the pool.
-
公开(公告)号:US20220027178A1
公开(公告)日:2022-01-27
申请号:US16938929
申请日:2020-07-25
申请人: Unisys Corporation
摘要: The present disclosure relates generally to computer architecture and infrastructure for guest operating systems executing on a host operating system. A method of allowing command sessions in a guest operating system includes receiving, by a host operating system, a request to invoke a command session by a guest operating system; receiving, by the host operating system, a request to invoke a bash interceptor; and loading bash code into a secure sandbox on the host operating system.
-
-
-
-
-