Invention Grant
- Patent Title: Privilege separation
- Patent Title (中): 特权分离
-
Application No.: US14093904Application Date: 2013-12-02
-
Publication No.: US09282100B2Publication Date: 2016-03-08
- Inventor: Jonathan Clark , Tyler Abair
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Lempia Summerfield Katz LLC
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/60

Abstract:
In one implementation, an interposer library is installed on an embedded system or another type of computing system. The system may be configured to host web services or route data packets. A processor, executes processes of the system, and the interposer library intercepts data indicative of relationships of the processes. An access map is generated based on relationships of the processes of the system. The system is modified according to a set of procedures derived from the access map. The set of procedures may be derived by the processor or the access map. The set of procedures may be a minimum privilege solution that minimizes the privilege level of each process to a lowest privilege possible while maintaining the requisite functions of the process.
Public/Granted literature
- US20150156202A1 Privilege Separation Public/Granted day:2015-06-04
Information query