×

Information processing method, apparatus, and system for controlling computer resources, control method therefor, storage medium, and program

  • US 7,607,131 B2
  • Filed: 11/19/2001
  • Issued: 10/20/2009
  • Est. Priority Date: 11/20/2000
  • Status: Active Grant
First Claim
Patent Images

1. An information processing method of controlling access to computer storage, display, recording and other resources managed by an operating system in a computer, the method being implemented by a specific resource management program located between the operating system and an application, the method comprising:

  • a storing step of storing a management table in a storage medium, wherein the management table provides, for each computer resource managed by the operating system, access right information comprising access rights, each represented by a series of basic operations for accessing computer resources, and conditions under which the access rights are validated;

    an interception step of intercepting an access request for a first computer resource from a process, before the access request is transferred to the operating system;

    a monitoring step of monitoring all the basic operations for accessing computer resources;

    a registration step of, when the process secures access to the first computer resource, registering a correspondence between the process and the first computer resource in a storage medium;

    a cancellation step of, when the process releases the first computer resource, cancelling the correspondence between the process and the first computer resource;

    a determination step of;

    retrieving access right information of the first computer resource from the management table;

    examining the monitoring result to see whether there is a series of basic operations associated with the process and the first computer resource which, when considered together, is consistent with one of the access rights, anddetermining whether the process is allowed to access the first computer resource based on the examination result;

    a processing step of, if it is determined in the determination step that the process is allowed to access the first computer resource, transferring the access request to the operating system and returning a result from the operating system to the process; and

    a denial step of denying the access request, if it is determined in the determination step that the process is not allowed to access the first computer resource.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×