Invention Grant
- Patent Title: Methods and systems for network-based management of application security
-
Application No.: US14024542Application Date: 2013-09-11
-
Publication No.: US09654474B2Publication Date: 2017-05-16
- Inventor: Marco Peretti
- Applicant: BeyondTrust Corporation
- Applicant Address: US AZ Phoenix
- Assignee: BEYONDTRUST SOFTWARE, INC.
- Current Assignee: BEYONDTRUST SOFTWARE, INC.
- Current Assignee Address: US AZ Phoenix
- Agency: Hankin Patent Law, APC
- Agent Kevin Schraven; Susan L. Mizer
- Main IPC: G06F21/00
- IPC: G06F21/00 ; H04L29/06

Abstract:
To control privileges and access to resources on a per-process basis, an administrator creates a rule that may be applied to modify a process's token. The rule includes an application-criterion set and changes to be made to the groups and/or privileges of a token. The rule is set as a policy within a group policy object (GPO), where a GPO is associated with one or more groups of computers. When a GPO containing a rule is applied to a computer, a driver installed on the computer accesses the rule(s) anytime a logged-on user executes a process. If the executed process satisfies the criterion set of a rule the changes contained within the rule are made to the process token, and the user has expanded and/or contracted access and/or privileges for only that process.
Public/Granted literature
- US20140020052A1 METHODS AND SYSTEMS FOR NETWORK-BASED MANAGEMENT OF APPLICATION SECURITY Public/Granted day:2014-01-16
Information query