Invention Grant
- Patent Title: System and method for identity decisions and invalidation
- Patent Title (中): 身份决定和无效的制度和方法
-
Application No.: US11087222Application Date: 2005-03-22
-
Publication No.: US07756841B2Publication Date: 2010-07-13
- Inventor: David B. Probert , Eric Li , Genevieve Fernandes , John Rector
- Applicant: David B. Probert , Eric Li , Genevieve Fernandes , John Rector
- Applicant Address: US WA Redmond
- Assignee: Microsoft Corporation
- Current Assignee: Microsoft Corporation
- Current Assignee Address: US WA Redmond
- Agency: Wolf, Greenfield & Sacks, P.C.
- Main IPC: G06F17/30
- IPC: G06F17/30

Abstract:
A system and method for identity decisions and invalidation. Modified objects (e.g., files, executables, etc.) are flagged for reevaluation. Privileges associated with the object are only persisted if the modifications are determined to be authorized (e.g., updates and patches). In one embodiment, a tagging system registers to be notified of all writes, renames, truncations, moves, deletions, or any other relevant modifications to objects. If the tagging system detects a modification operation targeting the object, it invalidates all identity decisions cached with the object. The next time the object runs, the system does not recognize the object and it is forced to reevaluate its identity. Thus, patching and other write operations are still permitted, but the system detects the changed object and reevaluates the identity.
Public/Granted literature
- US20060218389A1 System and method for identity decisions and invalidation Public/Granted day:2006-09-28
Information query