Nix: A Safe and Policy-Free System for Software Deployment

Nix: A Safe and Policy-Free System for Software Deployment
复制标题

Nix:安全且无策略的软件部署系统

DOI:
--
复制
发表时间:
2004
期刊:
LiSA
影响因子:
--
通讯作者:
E. Visser
E. Visser
中科院分区:
--
文献类型:
--
作者:
E. Dolstra;M. Jonge;E. Visser

文献摘要

被引文献

相似文献

现有的软件部署系统既不安全,也不够灵活。主要的安全问题是无法强制执行组件依赖性的可靠规范,以及缺乏对组件的多个版本或变体的支持。这使得升级或删除组件等部署操作变得危险且不可预测。部署系统还必须足够灵活(即无策略),以支持集中式和本地包管理,并允许使用多种机制来传输组件。在本文中,我们介绍了 Nix,这是一个部署系统,它通过使用加密哈希来计算组件实例的唯一路径的简单技术来解决这些问题。
Existing systems for software deployment are neither safe nor sufficiently flexible. Primary safety issues are the inability to enforce reliable specification of component dependencies, and the lack of support for multiple versions or variants of a component. This renders deployment operations such as upgrading or deleting components dangerous and unpredictable. A deployment system must also be flexible (i.e., policy-free) enough to support both centralised and local package management, and to allow a variety of mechanisms for transferring components. In this paper we present Nix, a deployment system that addresses these issues through a simple technique of using cryptographic hashes to compute unique paths for component instances.