首页> 外国专利> System and method for the automatic evaluation of existing security policies and automatic creation of new security policies

System and method for the automatic evaluation of existing security policies and automatic creation of new security policies

机译:用于自动评估现有安全策略并自动创建新安全策略的系统和方法

摘要

The present invention relates to methodologies for combining policy analysis and static analysis of code and thereafter determining whether the permissions granted by the policy to the code and to the subjects executing it are appropriate. In particular, this involves the verification that too many permissions have not been granted (wherein this would be a violation of the Principle of Least Privilege), and that the permissions being granted are sufficient to execute the code without run-time authorization failures, thus resulting in the failure of the program to execute.
机译:本发明涉及用于组合策略分析和代码的静态分析,然后确定该策略对代码和执行代码的主体的许可权限是否适当的方法。特别是,这涉及验证没有授予太多权限(这将违反最小权限原则),并且所授予的权限足以执行代码而不会导致运行时授权失败,因此,导致程序执行失败。

著录项

  • 公开/公告号US8230477B2

    专利类型

  • 公开/公告日2012-07-24

    原文格式PDF

  • 申请/专利权人 PAOLINA CENTONZE;MARCO PISTOIA;

    申请/专利号US20070677298

  • 发明设计人 MARCO PISTOIA;PAOLINA CENTONZE;

    申请日2007-02-21

  • 分类号G06F21/00;

  • 国家 US

  • 入库时间 2022-08-21 17:28:54

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号