发明名称 METHODS FOR RESTRICTING RESOURCES USED BY A PROGRAM BASED ON ENTITLEMENTS
摘要 In response to a request for launching a program, a list of one or more application frameworks to be accessed by the program during execution of the program is determined. Zero or more entitlements representing one or more resources entitled by the program during the execution are determined. A set of one or more rules based on the entitlements of the program is obtained from at least one of the application frameworks. The set of one or more rules specifies one or more constraints of resources associated with the at least one application framework. A security profile is dynamically compiled for the program based on the set of one or more rules associated with the at least one application framework. The compiled security profile is used to restrict the program from accessing at least one resource of the at least one application frameworks during the execution of the program.
申请公布号 US2012185863(A1) 申请公布日期 2012.07.19
申请号 US201113007472 申请日期 2011.01.14
申请人 KRSTIC IVAN;JENNINGS AUSTIN G.;HAGY RICHARD L.;APPLE INC. 发明人 KRSTIC IVAN;JENNINGS AUSTIN G.;HAGY RICHARD L.
分类号 G06F9/50 主分类号 G06F9/50
代理机构 代理人
主权项
地址