JP2011526387A5 - - Google Patents

Download PDF

Info

Publication number
JP2011526387A5
JP2011526387A5 JP2011516585A JP2011516585A JP2011526387A5 JP 2011526387 A5 JP2011526387 A5 JP 2011526387A5 JP 2011516585 A JP2011516585 A JP 2011516585A JP 2011516585 A JP2011516585 A JP 2011516585A JP 2011526387 A5 JP2011526387 A5 JP 2011526387A5
Authority
JP
Japan
Prior art keywords
security
access
subject
processor
associated subject
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
JP2011516585A
Other languages
English (en)
Japanese (ja)
Other versions
JP2011526387A (ja
JP5462254B2 (ja
Filing date
Publication date
Priority claimed from US12/163,164 external-priority patent/US8397290B2/en
Application filed filed Critical
Publication of JP2011526387A publication Critical patent/JP2011526387A/ja
Publication of JP2011526387A5 publication Critical patent/JP2011526387A5/ja
Application granted granted Critical
Publication of JP5462254B2 publication Critical patent/JP5462254B2/ja
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

JP2011516585A 2008-06-27 2009-06-24 コンピューティングプロセスのための最小特権アクセスの付与 Expired - Fee Related JP5462254B2 (ja)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US12/163,164 2008-06-27
US12/163,164 US8397290B2 (en) 2008-06-27 2008-06-27 Granting least privilege access for computing processes
PCT/US2009/048461 WO2009158405A2 (en) 2008-06-27 2009-06-24 Granting least privilege access for computing processes

Publications (3)

Publication Number Publication Date
JP2011526387A JP2011526387A (ja) 2011-10-06
JP2011526387A5 true JP2011526387A5 (https=) 2012-06-28
JP5462254B2 JP5462254B2 (ja) 2014-04-02

Family

ID=41445278

Family Applications (1)

Application Number Title Priority Date Filing Date
JP2011516585A Expired - Fee Related JP5462254B2 (ja) 2008-06-27 2009-06-24 コンピューティングプロセスのための最小特権アクセスの付与

Country Status (6)

Country Link
US (1) US8397290B2 (https=)
EP (1) EP2291785A4 (https=)
JP (1) JP5462254B2 (https=)
KR (1) KR20110040767A (https=)
CN (1) CN102112990B (https=)
WO (1) WO2009158405A2 (https=)

Families Citing this family (39)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8397290B2 (en) * 2008-06-27 2013-03-12 Microsoft Corporation Granting least privilege access for computing processes
WO2010037201A1 (en) * 2008-09-30 2010-04-08 Wicksoft Corporation System and method for secure management of mobile user access to enterprise network resources
US8798579B2 (en) 2008-09-30 2014-08-05 Xe2 Ltd. System and method for secure management of mobile user access to network resources
US9167028B1 (en) 2009-09-10 2015-10-20 AppDynamics, Inc. Monitoring distributed web application transactions
US8938533B1 (en) * 2009-09-10 2015-01-20 AppDynamics Inc. Automatic capture of diagnostic data based on transaction behavior learning
US8990561B2 (en) * 2011-09-09 2015-03-24 Microsoft Technology Licensing, Llc Pervasive package identifiers
US9800688B2 (en) 2011-09-12 2017-10-24 Microsoft Technology Licensing, Llc Platform-enabled proximity service
US9491247B2 (en) 2012-02-02 2016-11-08 AppDynamics, Inc. Automatic capture of detailed analysis information based on remote server analysis
US9311598B1 (en) 2012-02-02 2016-04-12 AppDynamics, Inc. Automatic capture of detailed analysis information for web application outliers with very low overhead
CN102647429A (zh) * 2012-04-28 2012-08-22 杭州格畅科技有限公司 应用间通信的访问控制方法、应用进程管理器、在线应用平台
EP3185469B1 (en) 2012-10-30 2018-10-17 LG Electronics Inc. Method and apparatus for authenticating access authority for specific resource in wireless communication system
US10356204B2 (en) 2012-12-13 2019-07-16 Microsoft Technology Licensing, Llc Application based hardware identifiers
WO2014119233A1 (ja) 2013-01-31 2014-08-07 日本電気株式会社 ネットワークシステム
JP6123350B2 (ja) * 2013-02-26 2017-05-10 日本電気株式会社 検証装置、検証方法、及びプログラム
WO2014143029A1 (en) 2013-03-15 2014-09-18 Mcafee, Inc. Generic privilege escalation prevention
US8990839B2 (en) 2013-04-22 2015-03-24 Microsoft Technology Licensing, Llc Controlling runtime access to application programming interfaces
US9858247B2 (en) 2013-05-20 2018-01-02 Microsoft Technology Licensing, Llc Runtime resolution of content references
CN103745161B (zh) * 2013-12-23 2016-08-24 东软集团股份有限公司 访问安全控制方法及装置
CN105471824A (zh) * 2014-09-03 2016-04-06 阿里巴巴集团控股有限公司 实现浏览器调用本地业务组件的方法、装置及系统
JP6340308B2 (ja) * 2014-12-05 2018-06-06 日本電信電話株式会社 並列処理システム、方法、およびプログラム
EP3238125B1 (en) 2014-12-26 2020-11-04 McAfee, LLC Trusted updates
CN104735091B (zh) * 2015-04-17 2018-03-30 三星电子(中国)研发中心 一种基于Linux系统的用户访问控制方法和装置
US10963565B1 (en) * 2015-10-29 2021-03-30 Palo Alto Networks, Inc. Integrated application analysis and endpoint protection
CN105550587A (zh) * 2015-12-11 2016-05-04 北京元心科技有限公司 在多系统的终端设备中控制系统资源访问的方法及装置
WO2018068868A1 (en) * 2016-10-14 2018-04-19 Huawei Technologies Co., Ltd. Apparatus and method for tracking access permissions over multiple execution environments
KR102690486B1 (ko) * 2016-11-28 2024-08-01 삼성전자주식회사 프로세서 및 그 제어방법
US10623410B2 (en) 2017-04-24 2020-04-14 Microsoft Technology Licensing, Llc Multi-level, distributed access control between services and applications
US10897462B2 (en) * 2017-05-16 2021-01-19 Citrix Systems, Inc. Systems and methods for encoding additional authentication data into an active directory security identifier
US10762202B2 (en) * 2018-04-11 2020-09-01 Crowdstrike, Inc. Securely and efficiently providing user notifications about security actions
US10868814B2 (en) * 2018-04-30 2020-12-15 Samsung Electronics Co., Ltd. System and method for flow-based architecture
US11132437B2 (en) 2018-06-26 2021-09-28 The Government Of The United States Of America, As Represented By The Secretary Of The Navy Secure computer operating system through interpreted user applications
CN109284193B (zh) * 2018-09-06 2022-12-09 平安科技(深圳)有限公司 一种基于多线程的分布式数据处理方法及服务器
CN109684104B (zh) * 2018-12-17 2021-03-26 广州方硅信息技术有限公司 一种服务间调用链的展示实现方法及设备
CN111381977A (zh) * 2018-12-29 2020-07-07 北大方正集团有限公司 消息处理方法及设备
US11822676B2 (en) * 2019-06-25 2023-11-21 Vmware, Inc. Determination of a minimal set of privileges to execute a workflow in a virtualized computing environment
US11433536B2 (en) * 2019-09-19 2022-09-06 UiPath, Inc. Process understanding for robotic process automation (RPA) using sequence extraction
CN110740102B (zh) * 2019-09-29 2021-10-15 苏州浪潮智能科技有限公司 一种通信方法、系统、设备及计算机可读存储介质
US11436160B2 (en) * 2019-10-03 2022-09-06 Microsoft Technology Licensing, Llc Protection of data in memory of an integrated circuit using a secret token
US20230421597A1 (en) * 2022-06-28 2023-12-28 QSecGrid, Inc. Cybersecurity risk assessment and measurement

Family Cites Families (19)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5187790A (en) 1989-06-29 1993-02-16 Digital Equipment Corporation Server impersonation of client processes in an object based computer operating system
US5414852A (en) * 1992-10-30 1995-05-09 International Business Machines Corporation Method for protecting data in a computer system
US5586260A (en) * 1993-02-12 1996-12-17 Digital Equipment Corporation Method and apparatus for authenticating a client to a server in computer systems which support different security mechanisms
US6377994B1 (en) 1996-04-15 2002-04-23 International Business Machines Corporation Method and apparatus for controlling server access to a resource in a client/server system
US6338064B1 (en) 1998-05-14 2002-01-08 International Business Machines Corporation Method for enabling a web server running a “closed” native operating system to impersonate a user of a web client to obtain a protected file
US6279111B1 (en) * 1998-06-12 2001-08-21 Microsoft Corporation Security model using restricted tokens
US6412070B1 (en) * 1998-09-21 2002-06-25 Microsoft Corporation Extensible security system and method for controlling access to objects in a computing environment
US6385724B1 (en) 1998-11-30 2002-05-07 Microsoft Corporation Automatic object caller chain with declarative impersonation and transitive trust
US7188254B2 (en) 2003-08-20 2007-03-06 Microsoft Corporation Peer-to-peer authorization method
US20050091535A1 (en) * 2003-10-24 2005-04-28 Microsoft Corporation Application identity for software products
US7703135B2 (en) * 2004-12-21 2010-04-20 International Business Machines Corporation Accessing protected resources via multi-identity security environments
US20060193467A1 (en) 2005-02-16 2006-08-31 Joseph Levin Access control in a computer system
US8646044B2 (en) * 2005-04-28 2014-02-04 Microsoft Corporation Mandatory integrity control
US20060259947A1 (en) * 2005-05-11 2006-11-16 Nokia Corporation Method for enforcing a Java security policy in a multi virtual machine system
US20060259980A1 (en) * 2005-05-16 2006-11-16 Microsoft Corporation Method and system for limiting rights of services
US7702912B2 (en) * 2005-05-19 2010-04-20 Novell, Inc. Secure systems management
US20070011452A1 (en) * 2005-07-08 2007-01-11 Alcatel Multi-level and multi-factor security credentials management for network element authentication
US8024770B2 (en) 2006-06-21 2011-09-20 Microsoft Corporation Techniques for managing security contexts
US8397290B2 (en) * 2008-06-27 2013-03-12 Microsoft Corporation Granting least privilege access for computing processes

Similar Documents

Publication Publication Date Title
JP2011526387A5 (https=)
US11693951B2 (en) Method and apparatus for applying application context security controls for software containers
US7188254B2 (en) Peer-to-peer authorization method
JP6510568B2 (ja) マルチテナントアプリケーションサーバ環境におけるセキュリティをサポートするためのシステムおよび方法
CN101755271B (zh) 用于在连接受限设备配置和开放服务网关联盟环境中管理访问特权的方法和装置
CN111552936B (zh) 一种基于调度机构级别的跨系统访问权限控制方法及系统
US20170286653A1 (en) Identity risk score generation and implementation
US20090178107A1 (en) Access control policy conversion
CN105160269A (zh) 一种Docker容器内数据的访问方法及装置
CN113242230B (zh) 一种基于智能合约的多级认证与访问控制系统及方法
JP2012138078A (ja) クラウド・コンピューティング環境に保管されたデータに関するきめ細かい任意アクセス制御の有効化のための方法、システム、およびコンピュータ・プログラム
US11310216B2 (en) Apparatus and method for predictive token validation
CN113179285B (zh) 视频物联网高性能密码服务方法、装置和系统
WO2017113582A1 (zh) 数据访问方法、数据访问系统和终端
CN107622211A (zh) 一种大数据集群权限访问控制方法及装置
WO2020156135A1 (zh) 一种访问控制策略的处理方法、装置及计算机可读存储介质
CN105512279A (zh) 一种元数据访问方法、相关设备及系统
US20150341362A1 (en) Method and system for selectively permitting non-secure application to communicate with secure application
CN105897663A (zh) 一种确定访问权限的方法、装置及设备
CN113239386A (zh) Api权限控制方法及装置
JP2023517531A (ja) 認可されていないファイル変更からフォルダを保護するためのシステム及び方法
US20140380417A1 (en) Methods And Devices For Controlling Access To Distributed Resources
WO2021102729A1 (zh) 内存访问方法、微处理器、客户端及计算机存储介质
CN115510471A (zh) 一种权限管理方法、计算机可读存储介质、系统及装置
JP4910210B2 (ja) 情報フィルタ装置