Secure Multi-execution in Haskell

Secure Multi-execution in Haskell
复制标题

Haskell 中的安全多重执行

DOI:
--
复制
发表时间:
2011
期刊:
Ershov Memorial Conference
影响因子:
--
通讯作者:
Alejandro Russo
Alejandro Russo
中科院分区:
--
文献类型:
--
作者:
Mauro Jaskelioff;Alejandro Russo

文献摘要

被引文献

相似文献

基于语言的信息流安全已成为一种在在线系统中保证机密性的有前途的技术,在在线系统中,强制机制通常以运行时监视器、代码转换或类型系统的形式呈现。最近,一种称为安全多执行的替代技术被提出。这种新方法背后的主要思想是多次运行程序,每个安全级别运行一次,使用针对I/O操作的特殊规则。与运行时监视器和类型系统相比,安全多执行不需要检查应用程序的完整代码(只需要检查其I/O操作)。在本文中,我们提出了一个库的核心,通过安全多执行来提供无干扰。我们给出了该库的代码以及一个针对Haskell的运行示例。据我们所知,本文是第一个考虑函数环境中的安全多执行并将该技术作为库提供的工作。
Language-based information-flow security has emerged as a promising technology to guarantee confidentiality in on-line systems, where enforcement mechanisms are typically presented as run-time monitors, code transformations, or type-systems. Recently, an alternative technique, called secure multi-execution , has been proposed. The main idea behind this novel approach consists on running a program multiple times, once for each security level, using special rules for I/O operations. Compared to run-time monitors and type-systems, secure multi-execution does not require to inspect the full code of the application (only its I/O actions). In this paper, we propose the core of a library to provide non-interference through secure-multi execution. We present the code of the library as well as a running example for Haskell. To the best of our knowledge, this paper is the first work to consider secure-multi execution in a functional setting and provide this technology as a library.