首页> 外国专利> PERSONALIZED AND CRYPTOGRAPHICALLY SECURE ACCESS CONTROL IN OPERATING SYSTEMS

PERSONALIZED AND CRYPTOGRAPHICALLY SECURE ACCESS CONTROL IN OPERATING SYSTEMS

机译:操作系统中的个性化和密码安全访问控制

摘要

An access control system includes a processor configured to provide a trusted execution environment isolated from a rich execution environment. A rich OS operates in the rich execution environment while a trusted OS operates in the trusted execution environment. A plurality of protected data files are stored in non-volatile memory. When a process requests access to a protected data file, the computer system can permit the requesting process to access the requested data file only if a validated application token is present that corresponds to the requesting process. An application token is generated for the associated application by: detecting initiation of a first process associated with the associated application; determining that a valid user code is available within the trusted execution environment; and generating the application token using the valid user code upon determining that the valid user code is available within the trusted execution environment.
机译:访问控制系统包括处理器,该处理器被配置为提供与富执行环境隔离的可信执行环境。丰富的OS在丰富的执行环境中运行,而受信任的OS在受信任的执行环境中运行。多个受保护的数据文件存储在非易失性存储器中。当进程请求访问受保护的数据文件时,仅当存在与请求进程相对应的经过验证的应用程序令牌时,计算机系统才能允许请求进程访问请求的数据文件。通过以下步骤为关联的应用程序生成应用程序令牌:检测与关联的应用程序关联的第一进程的启动;确定在可信执行环境中有效的用户代码可用;在确定有效用户代码在受信任执行环境中可用时,使用有效用户代码生成应用程序令牌。

著录项

  • 公开/公告号US2020175208A1

    专利类型

  • 公开/公告日2020-06-04

    原文格式PDF

  • 申请/专利权人 BICDROID INC.;

    申请/专利号US201916695665

  • 发明设计人 XIANG YU;JIN MENG;EN-HUI YANG;

    申请日2019-11-26

  • 分类号G06F21/74;H04L9/32;G06F21/62;G06F21/44;

  • 国家 US

  • 入库时间 2022-08-21 11:19:47

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号