发明名称 System and method utilizing clean groups for security management
摘要 A system and method that utilizes clean groups for reducing security management complexity. The system reduces the complexity of managing security technologies by automatically assigning objects such as computers or persons to clean groups which are defined by existing management infrastructure. In an embodiment where members are computers, ongoing automatic efforts ensure that clean groups include only computers that satisfy specified security principles, which allows administrators to treat all computers that are in compliance as a group. Separately, the members of the clean group are required to implement self-governance, which is an ability to detect being compromised and to take steps to remove themselves from the clean group when they are compromised. In addition to attempting to remove itself from the clean group, a compromised computer may take additional steps aimed at minimizing further damage, such as erasing or hiding computer domain credentials, hiding/protecting/disabling cryptographic (e.g. EFS) keys, or logging out a user.
申请公布号 US7673326(B2) 申请公布日期 2010.03.02
申请号 US20040771840 申请日期 2004.02.04
申请人 MICROSOFT CORPORATION 发明人 SHELEST ART;JOHANSSON JESPER M.
分类号 G06F12/14;G06F9/44;G06F11/30;G06F21/00 主分类号 G06F12/14
代理机构 代理人
主权项
地址