Patent · US Expired

Evidence-based application security

US7669238B2 · kind B2 · utility

21Cited by
14References
30Claims
0Family size

Assignee

Inventors

Key dates

Filing dateNov 10, 2003
Grant dateFeb 23, 2010
Priority date
Expiry dateMar 28, 2026

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F21/53
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

Evidence-based application security may be implemented at the application and/or application group levels. A manifest may be provided defining at least one trust condition for the application or application group. A policy manager evaluates application evidence (e.g., an XrML license) for an application or group of applications relative to the manifest. The application is only granted permissions on the computer system if the application evidence indicates that the application is trusted. Similarly, a group of applications are only granted permissions on the computer system if the evidence indicates that the group of applications is trusted. If the application evidence satisfies the at least one trust condition defined by the manifest, the policy manager generates a permission grant set for each code assembly that is a member of the at least one application. Evidence may be further evaluated for code assemblies that are members of the trusted application or application group.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.