首页> 外文期刊>MSDN Magazine >The Security Infrastructure of the CLR Provides Evidence, Policy, Permissions, and Enforcement Services
【24h】

The Security Infrastructure of the CLR Provides Evidence, Policy, Permissions, and Enforcement Services

机译:CLR的安全基础结构提供证据,策略,权限和执行服务

获取原文
获取原文并翻译 | 示例

摘要

The common language runtime of the .MET Framework has its own secure execution model that isn't bound by the limitations of the operating system it's running on. In addition, unlike the old principal-based security, the CLR enforces security policy based on where code is coming from rather than who the user is. This model, called code access security, makes sense in today's environment because so much code is installed over the Internet and even a trusted user doesn't know when that code is safe. In this article, Don Box explains how code access security works in the CLR. He discusses the kinds of evidence required by policy, how permissions are granted, and how policy is enforced by the runtime.
机译:.MET Framework的公共语言运行库具有其自己的安全执行模型,不受其运行的操作系统限制的约束。另外,与旧的基于主体的安全性不同,CLR根据代码的来源而不是用户的身份来实施安全策略。这种称为代码访问安全性的模型在当今的环境中很有意义,因为在Internet上安装了如此多的代码,甚至受信任的用户也不知道该代码何时安全。在本文中,Don Box说明了CLR中代码访问安全性的工作方式。他讨论了策略所需的各种证据,如何授予权限以及运行时如何执行策略。

著录项

  • 来源
    《MSDN Magazine》 |2002年第9期|p.52-5658-6062-6466-68|共14页
  • 作者

    Don Box;

  • 作者单位

    Microsoft working on next generatin Web Service protocols and plumbing;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类 计算技术、计算机技术;
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号