J-Kernel: A Capability-Based Operating System for Java

J-Kernel: A Capability-Based Operating System for Java
复制标题

J-Kernel:基于功能的 Java 操作系统

DOI:
10.1007/3-540-48749-2_17
复制
发表时间:
2001
影响因子:
--
通讯作者:
Daniel Spoonhower
Daniel Spoonhower
中科院分区:
--
文献类型:
--
作者:
T. V. Eicken;Chi;G. Czajkowski;C. Hawblitzel;Deyu Hu;Daniel Spoonhower

文献摘要

被引文献

相似文献

安全的语言技术可用于在单个地址空间内保护。该语言的类型系统强制执行此保护,该系统可确保无法伪造对对象的引用。但是,仅一种安全的语言缺乏在更传统的操作系统中授予的许多功能,例如撤销权利,线程保护,资源管理和对域终止的支持。本文介绍了J-Kernel,这是一种基于便携式Java的保护系统,可解决这些问题。 J-Kernel保护域可以通过可撤销的功能进行通信,但可以阻止直接共享不可撤销的对象参考。许多微基础台面表征了基于语言的保护成本,基于J-Kernel的可扩展网络和电话服务器展示了在大型应用程序中使用基于语言的保护的。
Safe language technology can be used for protection within a single address space. This protection is enforced by the language's type system, which ensures that references to objects cannot be forged. A safe language alone, however, lacks many features taken for granted in more traditional operating systems, such as rights revocation, thread protection, resource management, and support for domain termination. This paper describes the J-Kernel, a portable Java-based protection system that addresses these issues. J-Kernel protection domains can communicate through revocable capabilities, but are prevented from directly sharing unrevocable object references. A number of micro-benchmaxks characterize the costs of language-based protection, and an extensible web and telephony server based on the J-Kernel demonstrates the use of language-based protection in a large application.