Apple Inc.
Restricted resource classes of an operating system

Last updated:

Abstract:

Techniques for access control of a data processing system are described. In one embodiment, in response to a request from an application for accessing a resource of a data processing system, it is determined a first class of resources the requested resource belongs. A second class of resources the application is entitled to access is determined based on a resource entitlement encoded within the application and authorized by a predetermined authority. The application is allowed to access the resource if the first class and the second class of resources are matched. The application is denied from accessing the resource if the first class and the second class are not matched, regardless an operating privilege level of the application.

Status:
Grant
Type:

Utility

Filling date:

30 May 2014

Issue date:

24 Aug 2021