首页> 外国专利> Workstation application server programming protection via classloader policy based visibility control

Workstation application server programming protection via classloader policy based visibility control

机译:通过基于类加载器策略的可见性控制保护工作站应用服务器的编程

摘要

Provided is a method for providing Java modularity class loader protection by controlling the visibility of WebSphere, service provider, library and utility code interfaces. Interface access authorization is checked once, during module and class loading to effectively protect vulnerable programming interfaces, eliminating permission checking during execution. Code in a WebSphere Application server (WAS) computing environment is categorized into a finite number of sets in which one permission type is assigned to each set and the code in each set runs at the same privilege zone. Each set exposes programming interfaces to provide functional service and code in a particular set can only access code in the same or a lower security zone set. Also provided is a technique for explicitly providing to specific modules in lower security zones access to modules or designated interfaces of modules in higher security zones.
机译:提供了一种通过控制WebSphere,服务提供者,库和实用程序代码接口的可见性来提供Java模块化类加载器保护的方法。在模块和类加载期间,将对接口访问授权进行一次检查,以有效保护易受攻击的编程接口,从而消除了执行期间的权限检查。 WebSphere Application Server(WAS)计算环境中的代码被分类为有限数量的集合,其中为每个集合分配一种许可类型,并且每个集合中的代码在相同的特权区运行。每个集合公开编程接口以提供功能服务,并且特定集合中的代码只能访问相同或较低安全区域集中的代码。还提供了一种用于向较低安全区域中的特定模块显式提供对较高安全区域中的模块或模块的指定接口的访问的技术。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号