发明名称 |
Performing secure and insecure computing operations in a compartmented operating system |
摘要 |
<p>A process 23 runs directly on a host operating system 22, until the process 23 attempts an operation which can affect security of the host operating system 22 (such as loading a kernel module or using system privileges). A guest operating system 25 is then provided running as a virtual machine session within a compartment 24 of the host operating system 22 and running of the process 23 continues using the guest operating system. Operations of the process 23 which can affect security of the host operating system 22 are instead performed on the guest operating system 25, giving greater security. The guest operating system 25 is only invoked selectively, leading to greater overall efficiency.</p> |
申请公布号 |
EP1271313(A2) |
申请公布日期 |
2003.01.02 |
申请号 |
EP20020254078 |
申请日期 |
2002.06.12 |
申请人 |
HEWLETT PACKARD COMPANY, A DELAWARE CORPORATION |
发明人 |
GRIFFIN, JONATHAN;DALTON, CHRISTOPHER I |
分类号 |
G06F9/455;(IPC1-7):G06F9/455 |
主分类号 |
G06F9/455 |
代理机构 |
|
代理人 |
|
主权项 |
|
地址 |
|