Invention Grant
- Patent Title: Enforcement of security policies for kernel module loading
- Patent Title (中): 执行内核模块加载的安全策略
-
Application No.: US11268232Application Date: 2005-11-07
-
Publication No.: US07644271B1Publication Date: 2010-01-05
- Inventor: Mikhail Cherepov , Yan Chen
- Applicant: Mikhail Cherepov , Yan Chen
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: BainwoodHuang
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F12/14 ; G06F12/16

Abstract:
A method and computer program product for providing enforcement of security policies for kernel module loading is presented. File paths for shared library executable files opened by user processes are cached. When a request to load a kernel loadable module (KLM) is received, a previously cached file path for said KLM is retrieved, said file path mapping a location of an executable file from which said KLM was produced. A security policy is applied to said file path, wherein when said file path triggers a security policy rule then an action associated with a triggered rule is taken, and wherein when said file path does not trigger a security policy rule then said KLM request is allowed to proceed.
Information query