首页> 外国专利> Process control software security architecture based on least privileges

Process control software security architecture based on least privileges

机译:基于最小权限的过程控制软件安全架构

摘要

A computer device 220 comprising an operating system that executes according to configuration data to implement service processes 260 and desktop applications 258, the service processes being run to provide services to the applications. The OS executes to enforce a service namespace 250, which executes the service processes, that is separate from a desktop namespace 252, which executes the applications, and where all processes implemented in the service namespace must communicate with processes in the desktop namespace via inter-process communications 292. Privileges of the applications, which may not include admin privileges or be elevated, can be set separately from the privileges of user accounts, and can all be set the same privileges independently of the user accounts. There may also be local memory, which the applications are prevented from writing service files or folders too, as well as a user interface wherein the service processes are prohibited from accessing the desktop.
机译:一种计算机设备220,包括根据配置数据执行以实现服务处理260和桌面应用程序258的操作系统,该服务进程正在运行以向应用程序提供服务。 操作系统执行以实施执行服务进程的服务命名空间250,其与执行应用程序的桌面命名空间252分开,该服务进程是执行应用程序的,并且在服务命名空间中实现的所有进程必须通过互联间地与桌面命名空间中的进程进行通信 过程通信292.可以与用户帐户的权限分开设置的应用程序的权限,这些应用程序可能不包括管理权限或升高,并且可以独立于用户帐户设置相同的权限。 也可能存在本地存储器,该应用程序也可以防止应用程序或文件夹,以及用户界面,其中禁止服务进程访问桌面。

著录项

  • 公开/公告号GB2596191A

    专利类型

  • 公开/公告日2021-12-22

    原文格式PDF

  • 申请/专利权人 FISHER-ROSEMOUNT SYSTEMS INC;

    申请/专利号GB20210005490

  • 发明设计人 LEE ALLEN NEITZEL;DAN HALVER USSING;

    申请日2015-07-16

  • 分类号G06F21/62;G06F21/60;

  • 国家 GB

  • 入库时间 2022-08-24 22:56:32

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号