Invention Grant
US08627451B2 Systems and methods for providing an isolated execution environment for accessing untrusted content
有权
用于提供用于访问不受信任内容的隔离执行环境的系统和方法
- Patent Title: Systems and methods for providing an isolated execution environment for accessing untrusted content
- Patent Title (中): 用于提供用于访问不受信任内容的隔离执行环境的系统和方法
-
Application No.: US12545500Application Date: 2009-08-21
-
Publication No.: US08627451B2Publication Date: 2014-01-07
- Inventor: Daniel J. Walsh , Eric Lynn Paris
- Applicant: Daniel J. Walsh , Eric Lynn Paris
- Applicant Address: US NC Raleigh
- Assignee: Red Hat, Inc.
- Current Assignee: Red Hat, Inc.
- Current Assignee Address: US NC Raleigh
- Agency: Lowenstein Sandler LLP
- Main IPC: G06F21/00
- IPC: G06F21/00

Abstract:
A sandbox tool can cooperate with components of a secure operating system to create an isolated execution environment for accessing untrusted content without exposing other processes and resources of the computing system to the untrusted content. The sandbox tool can allocate resources (storage space, memory, etc) of the computing system, which are necessary to access the untrusted content, to the isolated execution environment, and apply security polices of the operating system to the isolated execution environment such that untrusted content running in the isolated execution environment can only access the resources allocated to the isolated execution environment.
Public/Granted literature
- US20110047613A1 SYSTEMS AND METHODS FOR PROVIDING AN ISOLATED EXECUTION ENVIRONMENT FOR ACCESSING UNTRUSTED CONTENT Public/Granted day:2011-02-24
Information query