mmapx: uniform memory protection in a heterogeneous world

mmapx: uniform memory protection in a heterogeneous world
复制标题

mmapx:异构世界中的统一内存保护

DOI:
10.1145/3458336.3465273
复制
发表时间:
2021
期刊:
Proceedings of the Workshop on Hot Topics in Operating Systems
影响因子:
--
通讯作者:
D. Schwyn
D. Schwyn
中科院分区:
--
文献类型:
--
作者:
Reto Achermann;David A. Cock;Roni Haecki;Nora Hossle;Lukas Humbel;Timothy Roscoe;D. Schwyn

文献摘要

参考文献

被引文献

相似文献

现代片上系统(SoC)是异构内核、智能设备和存储器的网络,通过多个可配置的地址转换和保护单元(如IOMMU和系统MMU)连接。像Linux这样的现代操作系统内核基于传统的MMU,并且没有明确的抽象来表示这种复杂性,主要是将IOMMU配置留给设备驱动程序。这导致了最近一系列严重的错误,以及对内存安全的“跨SoC”攻击的日益关注。为了解决这个问题,我们提出了一个新的内核原语,mmapx,解码网的基础上,丰富和详细的表示复杂的SoC的内存寻址语义从最近的正式方法文献。MMAPX提供用于安全地配置系统中的所有地址转换设施的统一设施。mmapx尽可能利用现有的Unix设施:用于命名、发现和粗粒度访问控制的文件系统,以及用于细粒度授权的文件描述符。我们展示了mmapx如何消除设备驱动程序直接编程IOMMU所引起的错误,而且底层模型捕获的细节在产生最小开销的同时具有进一步的好处。
Modern Systems-on-Chip (SoCs) are networks of heterogeneous cores, intelligent devices, and memory, connected through multiple configurable address translation and protection units like IOMMUs and System MMUs. Modern OS kernels like Linux are based on traditional MMUs and have no clear abstractions to represent this complexity, mostly leaving IOMMU configuration to device drivers. This has led to a recent spate of serious bugs, and increasing concern over "cross-SoC" attacks on memory security. To address this, we propose a new kernel primitive, mmapx, based on a decoding net a rich and detailed representation of the memory addressing semantics of a complex SoC from the recent formal methods literature. mmapx provides a uniform facility for securely configuring all the address translation facilities in a system. mmapx leverages existing Unix facilities wherever possible: the file system for naming, discovery, and coarse-grained access control, and file descriptors for fine-grained authorization. We show how mmapx can eliminate bugs caused by device drivers programming IOMMUs directly, but also the detail captured by the underlying model has further benefits while incurring minimal overhead.
Thunderclap:通过来自不可信外设的 DMA 探索操作系统 IOMMU 保护中的漏洞
DOI: 10.14722/ndss.2019.23194
发表时间: 2019
期刊: --
影响因子: --
作者:
Markettos A
通讯作者: Markettos A