首页> 外国专利> Method and system for secure running of untrusted content

Method and system for secure running of untrusted content

机译:不可信内容安全运行的方法和系统

摘要

Restricted execution contexts are provided for untrusted content, such as computer code or other data downloaded from websites, electronic mail messages and any attachments thereto, and scripts or client processes run on a server. A restricted process is set up for the untrusted content, and any actions attempted by the content are subject to the restrictions of the process, which may be based on various criteria. Whenever a process attempt to access a resource, a token associated with that process is compared against security information of that resource to determine if the type of access is allowed. The security information of each resource thus determines the extent to which the restricted process, and thus the untrusted content, has access. In general, the criteria used for setting up restrictions for each untrusted content's process is information indicative of how trusted or untrusted the content is likely to be.
机译:为不受信任的内容提供了受限制的执行上下文,例如从网站下载的计算机代码或其他数据,电子邮件消息及其任何附件,以及在服务器上运行的脚本或客户端进程。为不受信任的内容设置了受限制的过程,内容尝试执行的任何操作均受该过程的限制(可能基于各种标准)。每当进程尝试访问资源时,都会将与该进程关联的令牌与该资源的安全信息进行比较,以确定是否允许访问类型。因此,每个资源的安全性信息确定了受限制的过程以及不受信任的内容可以访问的程度。通常,用于为每个不受信任的内容的过程设置限制的标准是指示该内容可能是如何受信任或不受信任的信息。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号