Patent · US Active

Providing user on computer operating system with full privileges token and limited privileges token

US7636851B2 · kind B2 · utility

6Cited by
12References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJun 30, 2005
Grant dateDec 22, 2009
Priority date
Expiry dateDec 29, 2027

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2221/2149
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

An operating system for a computing device has a first session for a user that includes a first base process that has a first privileges token attached thereto. The first privileges token includes substantially a full set of privileges of the user on the operating system. The operating system also has a second session for the user that includes a second base process that has a second privileges token attached thereto. The second privileges token is derived from the first privileges token and includes only a minimum set of privileges of the user on the operating system. Thus, the second, limited token does not have all privileges associated with the first, full token but instead has a limited set of privileges and not extra privileges that could be employed to take actions that would be harmful, deceptive, or malicious.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.