首页> 外国专利> PROVIDING SECURITY FEATURES IN WRITE FILTER ENVIRONMENTS

PROVIDING SECURITY FEATURES IN WRITE FILTER ENVIRONMENTS

机译:提供写入过滤环境中的安全功能

摘要

A security client can provide security features in write filter environments. To prevent improper modifications to a protected volume, the security client can be employed to differentiate between direct I/O requests and reparsed I/O requests that are directed to a shadow volume and to block any direct I/O requests. Alternatively or additionally, the security client can be configured to determine whether an I/O request that is directed to the shadow volume targets an artifact in the write filter's exclusion list, and if not, block the I/O request. Alternatively or additionally, the security client can be configured to monitor registry operations to determine whether a modifying registry operation targets the write filter's persistent shadow registry hive, and if so, allow the modifying registry operation only if it targets a registry key in the write filter's exclusion list.
机译:安全客户端可以提供写入过滤环境中的安全功能。为防止对受保护卷的不当修改,可以使用安全客户端来区分直接I / O请求和归库,并归库被引导到影子卷并阻止任何直接I / O请求。可替代地或另外地,安全客户端可以被配置为确定针对阴影卷的I / O请求是否针对写入过滤器的排除列表中的伪像,而且如果没有,则阻止I / O请求。可替代地或另外地,安全客户端可以被配置为监视注册表操作以确定修改注册表操作是否针对写入过滤器的持久影子注册表Hive,如果是,允许修改注册表操作如果它针对写入过滤器中的注册表项排除列表。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号