发明名称 Policy abstraction mechanism
摘要 A secure operating system is disclosed in which all code implementing security functionality resides in a security module separate from the operating system code. Calls involving security functions are made using a format or interface which is standardized for all systems. Such a call identifies, inter alia the response and the access mode which are used to identify a call in a two dimensional table which contains a pointer to the needed security functions. In the way security functions are separately compilable and security solving changes can be made by linking in a new security module. Maintenance of security code is separated from maintenance of the underlying operating system.
申请公布号 US7185210(B1) 申请公布日期 2007.02.27
申请号 US19960668892 申请日期 1996.06.24
申请人 SUN MICROSYSTEMS, INC. 发明人 FADEN GLENN
分类号 G06F9/44 主分类号 G06F9/44
代理机构 代理人
主权项
地址