发明名称 SYSTEMS AND METHODS FOR GENERATING POLICIES FOR AN APPLICATION USING A VIRTUALIZED ENVIRONMENT
摘要 Provided herein are systems and methods for generating policies for a new application using a virtualized environment. Prior to allowing a new application to operate on a host system, the new application may be installed in a virtual environment. A first program execution restrictor of the virtualized environment may determine a set of policies for the new application. The set of policies may allow the new application to add specific program elements during installation and execution in the virtualized environment. The first program execution restrictor may verify an absence of malicious behavior from the new application while the new application executes in the virtualized environment. The new application may be executed on the host system responsive to the verification. The host system may have a second program execution restrictor that applies the set of policies when the new application is allowed to execute on the host system.
申请公布号 US2017103201(A1) 申请公布日期 2017.04.13
申请号 US201514878415 申请日期 2015.10.08
申请人 Digital Guardian, Inc. 发明人 Fox John C.
分类号 G06F21/53;G06F21/56;H04L29/06 主分类号 G06F21/53
代理机构 代理人
主权项 1. A method for generating policies for a new application using a virtualized environment prior to executing on a host operating system of a client device, the method comprising: installing, prior to allowing a new application to operate on a host system, the new application in a virtualized environment for execution; determining, for a first program execution restrictor of the virtualized environment, a set of policies for the new application, the set of policies allowing the new application to add specific program elements during installation and execution of the new application in the virtualized environment; verifying, via the first program execution restrictor applying the set of policies, an absence of malicious behavior from the new application while the new application executes in the virtualized environment; and executing, responsive to the verification, the new application on the host system, the host system having a second program execution restrictor that applies the set of policies when the new application executes on the host system.
地址 Waltham MA US