Invention Grant
US09305159B2 Secure system for allowing the execution of authorized computer program code
有权
用于允许执行授权的计算机程序代码的安全系统
- Patent Title: Secure system for allowing the execution of authorized computer program code
- Patent Title (中): 用于允许执行授权的计算机程序代码的安全系统
-
Application No.: US14546150Application Date: 2014-11-18
-
Publication No.: US09305159B2Publication Date: 2016-04-05
- Inventor: Andrew F. Fanton , John J. Gandee , William H. Lutton , Edwin L. Harper , Kurt E. Godwin , Anthony A. Rozga
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Hamilton, DeSanctis & Cha LLP
- Main IPC: H04L9/32
- IPC: H04L9/32 ; G06F21/44 ; G06F21/10 ; G06F21/51 ; G06F21/52 ; G06F21/60 ; H04L29/06 ; G06F21/53

Abstract:
Systems and methods for selective authorization of code modules are provided. According to one embodiment, a kernel mode driver monitors events occurring within a file system or an operating system. Responsive to observation of a trigger event performed by or initiated by an active process, in which the active process corresponds to a first code module within the file system and the event relates to a second code module within the file system, performing or bypassing a real-time authentication process on the second code module with reference to a whitelist containing content authenticators of approved code modules, which are known not to contain viruses or malicious code. The active process is allowed to load the second code module into memory when the real-time authentication process is bypassed or when it is performed and determines a content authenticator of the code module matches one of the content authenticators.
Public/Granted literature
- US20150193614A1 SECURE SYSTEM FOR ALLOWING THE EXECUTION OF AUTHORIZED COMPUTER PROGRAM CODE Public/Granted day:2015-07-09
Information query