Method and system for establishing security system based on domain mechanism

A security system and mechanism technology, applied in the field of information security, can solve problems such as limited flexibility and achieve strong portability

Inactive Publication Date: 2018-05-11
中科开元信息技术(北京)有限公司
View PDF9 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0006] However, the existing hardware-based security mechanism is highly dependent on suppliers and has limited flexibility, and the existing software-based security mechanism has not yet formed a mature and integrated solution

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and system for establishing security system based on domain mechanism
  • Method and system for establishing security system based on domain mechanism
  • Method and system for establishing security system based on domain mechanism

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0042] The present invention will be specifically introduced below in conjunction with the accompanying drawings and specific embodiments.

[0043] The method for constructing a security system based on a domain mechanism of the present invention comprises the following steps:

[0044] S1. Configure the domain management information of the system domain, the security domain and the common domain, and set the relevant information of the resource object;

[0045] S2. Configuring and registering a fault diagnosis routine;

[0046] S3, start the fault diagnosis routine, set the system clock;

[0047] S4. Create a domain environment according to the domain management information configured in step S1, and initialize resources in the domain respectively, and build a queue according to the initialization information of each resource object;

[0048] S5. Initialize the security kernel, create an initialization task of the system domain, update the task scheduling queue of the system...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method and system for establishing a security system based on a domain mechanism. The method includes the following steps of configuring domain management information, setting related information of a resource object, configuring and registering a failure diagnosis routine, starting the failure diagnosis routine, establishing a domain environment, initializing a securitycore, executing scheduling and running software, intersecting a software calling security API of a security domain with the security core, intersecting a software calling ordinary API of an ordinary domain with the security core, and regularly detecting the current system state through the security core. The system comprises system domains and application domains. The application domains include the security domain and the ordinary domain. The smaller the domain value of software is, the higher the authority is; software with high authority can have access to the software itself and resourceswith lower authorities, and software with the same authority can have access to one another. The domain mechanism is sufficiently used, and security isolation is achieved; the individualized securitysystem of different grades can be established; control is flexible, and strength is reasonable; hardware characteristics are not depended on, and portability is high.

Description

technical field [0001] The invention relates to a method and system for building a security system, in particular to a method and system for building a security system based on a domain mechanism, and belongs to the technical field of information security. Background technique [0002] With the wide application of computer technology in the fields of industry, medical care, home furnishing, and transportation, various information systems have emerged. These systems are always under attack while serving human beings. In order to ensure the stability and reliability of these systems Therefore, it is particularly important to build a security mechanism. [0003] The current mainstream security mechanism is mainly considered from two aspects: hardware and software: [0004] The hardware mainly relies on the chip and architecture to realize the security mechanism, such as ARM's TrustZone (trust zone) technology; [0005] The software is divided into many types according to diff...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/71
CPCG06F21/71
Inventor 卢延云郭俊军郭昶刘君悦
Owner 中科开元信息技术(北京)有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products