首页> 外国专利> MECHANISM FOR ENFORCING USER-SPECIFIC AND DEVICE-SPECIFIC SECURITY CONSTRAINTS IN AN ISOLATED EXECUTION ENVIRONMENT ON A DEVICE

MECHANISM FOR ENFORCING USER-SPECIFIC AND DEVICE-SPECIFIC SECURITY CONSTRAINTS IN AN ISOLATED EXECUTION ENVIRONMENT ON A DEVICE

机译:在设备的隔离执行环境中强制执行用户特定和设备特定的安全性约束的机制

摘要

A method and system for receiving from an authenticated user, at an authorization server, via a service provider, an authorization request to perform a sensitive operation on a first device. The method also includes generating, by the authorization server and in response to receiving the authorization request, an authorization token that includes a device constraint and a binding code constraint, which includes a binding code. Additionally, the method includes transmitting the authorization token to an isolated execution environment of the first device, where the sensitive operation is not permitted on the first device unless the first device successfully performs a verification in the isolated execution environment using the authorization token. Furthermore, the method includes permitting the sensitive operation based on the verification.
机译:一种用于在授权服务器上经由服务提供商从已认证用户接收授权请求以在第一设备上执行敏感操作的方法和系统。该方法还包括由授权服务器并且响应于接收到授权请求,生成包括设备约束和包括绑定代码的绑定代码约束的授权令牌。另外,该方法包括将授权令牌传输到第一设备的隔离执行环境,其中除非第一设备在该隔离执行环境中使用授权令牌成功执行验证,否则不允许在第一设备上进行敏感操作。此外,该方法包括基于验证来允许敏感操作。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号