Patent · US Active

Workstation application server programming protection via classloader policy based visibility control

US8447975B2 · kind B2 · utility

4Cited by
5References
17Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJul 7, 2005
Grant dateMay 21, 2013
Priority date
Expiry dateAug 3, 2028

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F9/445
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

Provided is a method for providing Java modularity class loader protection by controlling the visibility of WebSphere, service provider, library and utility code interfaces. Interface access authorization is checked once, during module and class loading to effectively protect vulnerable programming interfaces, eliminating permission checking during execution. Code in a WebSphere Application server (WAS) computing environment is categorized into a finite number of sets in which one permission type is assigned to each set and the code in each set runs at the same privilege zone. Each set exposes programming interfaces to provide functional service and code in a particular set can only access code in the same or a lower security zone set. Also provided is a technique for explicitly providing to specific modules in lower security zones access to modules or designated interfaces of modules in higher security zones.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.