发明名称 Protected execution environments within a computer system
摘要 A protected execution agent installs itself within a file system manager on the computer to control modifications to a protected execution environment by intercepting I/O requests from applications. If an unauthorized application attempts to modify the protected execution environment, the protected execution agent terminates the original I/O request and creates a redirected I/O request that specifies a corresponding directory path within an alternate environment. The requested I/O operation is a carried out by the file system against the alternate environment. A configuration utility is responsible for determining which installed applications are authorized to change the protected execution environment. The configuration utility also establishes a parent-child relationship between an unauthorized application that invokes or "spawns" an authorized application, with the authorized child application being considered unauthorized when performing processes on behalf of the unauthorized parent application.
申请公布号 US2005183137(A1) 申请公布日期 2005.08.18
申请号 US20050106832 申请日期 2005.04.15
申请人 EVERDREAM CORPORATION 发明人 JOOSTE SAREL K.
分类号 G06F1/00;G06F21/00;(IPC1-7):G06F12/14;G06F11/30 主分类号 G06F1/00
代理机构 代理人
主权项
地址