MX352776B - Plataforma de controlador restringida ejecuta controladores en area de prueba en modo de usuario. - Google Patents

Plataforma de controlador restringida ejecuta controladores en area de prueba en modo de usuario.

Info

Publication number
MX352776B
MX352776B MX2015016351A MX2015016351A MX352776B MX 352776 B MX352776 B MX 352776B MX 2015016351 A MX2015016351 A MX 2015016351A MX 2015016351 A MX2015016351 A MX 2015016351A MX 352776 B MX352776 B MX 352776B
Authority
MX
Mexico
Prior art keywords
platform
drivers
transmogrifying
restricted
sandbox
Prior art date
Application number
MX2015016351A
Other languages
English (en)
Other versions
MX2015016351A (es
Inventor
Diaz-Cuellar Gerardo
Kant Gupta Dhiraj
Original Assignee
Microsoft Technology Licensing Llc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Microsoft Technology Licensing Llc filed Critical Microsoft Technology Licensing Llc
Publication of MX2015016351A publication Critical patent/MX2015016351A/es
Publication of MX352776B publication Critical patent/MX352776B/es

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/45Structures or tools for the administration of authentication
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/10Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
    • G06F21/12Protecting executable software
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/52Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow
    • G06F21/53Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow by executing in a restricted environment, e.g. sandbox or secure virtual machine
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • Software Systems (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Multimedia (AREA)
  • Technology Law (AREA)
  • Computing Systems (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Stored Programmes (AREA)
  • User Interface Of Digital Computer (AREA)
  • Telephonic Communication Services (AREA)
  • Information Transfer Between Computers (AREA)
  • Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • General Health & Medical Sciences (AREA)
  • Small-Scale Networks (AREA)

Abstract

Se describe aquí una plataforma de controlador de transformación restringida. En una o más implementaciones, se proporciona una plataforma que permite un ambiente de ejecución restringido para controladores de red privada virtual (VPN) y otros controladores de transformación. La plataforma puede ser implementada como un componente de sistema operativo que expone un interfaz a través de la cual los controladores pueden registrarse con la plataforma e invocarse para realizar funciones soportadas por la plataforma. El ambiente de ejecución restringido coloca una o más restricciones en los controladores de transformación que operan a través de la plataforma. Por ejemplo, la ejecución puede ocurrir en un modo de usuario en una base por usuario y dentro de un área de pruebas. Además, la plataforma causa que los controladores asociados corran como procesos de fondo con privilegios relativamente bajos. Además, la plataforma puede suspender los controladores y controlar operaciones del controlador mediante programación de tareas de fondo. Por consiguiente, la exposición de los controles de transformación al sistema se controla y limita a través de la plataforma.
MX2015016351A 2013-05-31 2013-09-20 Plataforma de controlador restringida ejecuta controladores en area de prueba en modo de usuario. MX352776B (es)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US13/906,902 US9075985B2 (en) 2013-05-31 2013-05-31 Restricted transmogrifying driver platform
PCT/US2013/060753 WO2014193443A1 (en) 2013-05-31 2013-09-20 Restricted driver platform runs drivers in sandbox in user mode

Publications (2)

Publication Number Publication Date
MX2015016351A MX2015016351A (es) 2016-04-13
MX352776B true MX352776B (es) 2017-12-07

Family

ID=49293887

Family Applications (1)

Application Number Title Priority Date Filing Date
MX2015016351A MX352776B (es) 2013-05-31 2013-09-20 Plataforma de controlador restringida ejecuta controladores en area de prueba en modo de usuario.

Country Status (11)

Country Link
US (1) US9075985B2 (es)
EP (1) EP3005208B1 (es)
JP (1) JP6348173B2 (es)
KR (1) KR102089826B1 (es)
CN (1) CN105453097B (es)
AU (1) AU2013390782B9 (es)
BR (1) BR112015029296A2 (es)
CA (1) CA2910252C (es)
MX (1) MX352776B (es)
RU (1) RU2646332C2 (es)
WO (1) WO2014193443A1 (es)

Families Citing this family (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB2525596B (en) 2014-04-28 2021-05-26 Arm Ip Ltd Access control and code scheduling
CN104092691A (zh) * 2014-07-15 2014-10-08 北京奇虎科技有限公司 免root权限的联网防火墙的实现方法及客户端
US10289853B2 (en) 2016-03-31 2019-05-14 Microsoft Technology Licensing, Llc Secure driver platform
US10282210B2 (en) * 2016-06-13 2019-05-07 Huawei Technologies Co., Ltd. System and method for virtual hardware control
US10375111B2 (en) * 2016-11-12 2019-08-06 Microsoft Technology Licensing, Llc Anonymous containers
US10445257B2 (en) 2017-04-30 2019-10-15 Microsoft Technology Licensing, Llc Execution of subset of driver code in separate protection domain
CN107171894A (zh) * 2017-06-15 2017-09-15 北京奇虎科技有限公司 终端设备、分布式云端检测系统以及样本检测的方法
CN107402784B (zh) * 2017-07-07 2021-06-04 北京小米移动软件有限公司 应用管理方法及应用管理装置
CN108234526B (zh) * 2018-04-12 2020-06-26 厦门安胜网络科技有限公司 一种在沙箱中获取https数据的方法、装置、设备及可读介质
CN109657457B (zh) * 2018-12-27 2021-11-19 北京联创信安科技股份有限公司 一种面向业务环境的智能化内外双层沙箱管理系统
DE102020200969A1 (de) * 2020-01-28 2021-07-29 Robert Bosch Gesellschaft mit beschränkter Haftung Verfahren zum Instanziieren mindestens einer Ausführungsumgebung
KR20210125330A (ko) 2020-04-08 2021-10-18 삼성전자주식회사 보안 데이터 처리 방법 및 이를 지원하는 전자 장치

Family Cites Families (22)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO1999039254A2 (en) 1998-01-30 1999-08-05 3Com Corporation Providing low level hardware device driver from user mode under multi-tasking operating systems
US7508532B2 (en) * 2003-05-20 2009-03-24 Microsoft Corporation Method and system for sandboxing printer drivers
US7457626B2 (en) * 2004-03-19 2008-11-25 Microsoft Corporation Virtual private network structure reuse for mobile computing devices
US7149832B2 (en) * 2004-11-10 2006-12-12 Microsoft Corporation System and method for interrupt handling
US7784065B2 (en) * 2005-02-07 2010-08-24 Microsoft Corporation Interface for consistent program interaction with auxiliary computing devices
US20060242270A1 (en) 2005-04-21 2006-10-26 Microsoft Corporation Isolation of user-mode device drivers
US7603484B2 (en) * 2005-04-21 2009-10-13 Microsoft Corporation Protocol for communication with a user-mode device driver
US7581051B2 (en) 2005-05-16 2009-08-25 Microsoft Corporation Method for delivering interrupts to user mode drivers
US8659505B2 (en) * 2005-08-31 2014-02-25 Mircosoft Corporation Auxiliary display device driver interface
GB2430523B (en) * 2005-09-22 2010-02-17 Software 2000 Ltd Managing user permissions in a computer system
US8074231B2 (en) * 2005-10-26 2011-12-06 Microsoft Corporation Configuration of isolated extensions and device drivers
US20070101342A1 (en) * 2005-10-31 2007-05-03 Microsoft Corporation Automated device driver management
US7941813B1 (en) 2006-02-17 2011-05-10 Parallels Holdings, Ltd. System and method for using virtual machine for driver installation sandbox
US8281387B2 (en) * 2006-06-30 2012-10-02 Intel Corporation Method and apparatus for supporting a virtual private network architecture on a partitioned platform
CN101478407B (zh) * 2008-01-03 2011-05-25 联想(北京)有限公司 在线安全登录的方法及装置
US8850409B2 (en) * 2008-05-21 2014-09-30 Optumsoft, Inc. Notification-based constraint set translation to imperative execution
US8429741B2 (en) 2008-08-29 2013-04-23 Google, Inc. Altered token sandboxing
US8381288B2 (en) 2008-09-30 2013-02-19 Intel Corporation Restricted component access to application memory
US9262628B2 (en) 2009-09-11 2016-02-16 Empire Technology Development Llc Operating system sandbox
US8775802B1 (en) * 2009-10-23 2014-07-08 Secure Vector Computer security system and method
US8997078B2 (en) * 2011-04-12 2015-03-31 Pivotal Software, Inc. Release lifecycle management system for a multi-node application
US20130067531A1 (en) * 2011-09-12 2013-03-14 Microsoft Corporation Access Brokering Based on Declarations and Consent

Also Published As

Publication number Publication date
CN105453097A (zh) 2016-03-30
CN105453097B (zh) 2018-05-29
EP3005208A1 (en) 2016-04-13
CA2910252C (en) 2020-09-08
KR102089826B1 (ko) 2020-05-27
BR112015029296A2 (pt) 2017-07-25
EP3005208B1 (en) 2019-01-02
JP6348173B2 (ja) 2018-06-27
JP2016526226A (ja) 2016-09-01
WO2014193443A1 (en) 2014-12-04
AU2013390782A1 (en) 2015-11-12
RU2015150949A (ru) 2017-06-01
CA2910252A1 (en) 2014-12-04
KR20160015300A (ko) 2016-02-12
US20140359706A1 (en) 2014-12-04
AU2013390782B9 (en) 2019-07-04
MX2015016351A (es) 2016-04-13
US9075985B2 (en) 2015-07-07
RU2646332C2 (ru) 2018-03-02
AU2013390782B2 (en) 2019-06-20

Similar Documents

Publication Publication Date Title
MX352776B (es) Plataforma de controlador restringida ejecuta controladores en area de prueba en modo de usuario.
WO2013153441A8 (en) Secure zone for digital communications
IN2014CN04524A (es)
MX2017012830A (es) Asistencia al vehiculo.
MX346777B (es) Sistema de administración de computación específica de veíiculos para computación en la nube.
BR112014002842A2 (pt) aparelho eletrônico usando reconhecimento de movimento e método para controlar aparelho eletrônico do mesmo
WO2014062570A3 (en) A controller of a head unit in a vehicle for controlling application software, a controller in communication with a portable device and application software for a smartphone
GB2499922A (en) Management of a data network of a computing environment
TWD185058S (zh) 顯示裝置
TWD185056S (zh) 顯示裝置
WO2014035580A3 (en) Systems and methods for hosted applications
MX2016011616A (es) Administracion de recursos con base en perfiles de utilizacion de recursos de dispositivo especifico o usuario especifico.
BR112015020884A2 (pt) método e aparelho para ajustar estado de execução de dispositivo de casa inteligente
TWD185081S (zh) 顯示裝置
NZ706946A (en) Application hosting within a secured framework in a fueling environment
NZ749458A (en) Trusted terminal platform
WO2014176310A3 (en) Controlling tasks performed by a computing system
WO2011159519A3 (en) Contextual control of dynamic input device
WO2013101289A3 (en) Management of background tasks
TWD185054S (zh) 顯示裝置
WO2013010144A3 (en) Dynamic cross-environment application configuration
GB201310553D0 (en) Communicating based on navigation destination
TWD185059S (zh) 顯示裝置
AU2012302054A8 (en) Vehicular navigation control interface
WO2013010146A3 (en) Dynamic cross-environment application orientation

Legal Events

Date Code Title Description
FG Grant or registration