Labels and event processes in the asbestos operating system

Labels and event processes in the asbestos operating system
复制标题

DOI:
10.1145/1095810.1095813
复制
发表时间:
2007-12
影响因子:
1.5
通讯作者:
P. Efstathopoulos;Maxwell N. Krohn;Steve Vandebogart;C. Frey;David Ziegler;E. Kohler;David Mazières;F. Kaashoek;R. Morris
P. Efstathopoulos;Maxwell N. Krohn;Steve Vandebogart;C. Frey;David Ziegler;E. Kohler;David Mazières;F. Kaashoek;R. Morris
中科院分区:
计算机科学2区
文献类型:
--
作者:
P. Efstathopoulos;Maxwell N. Krohn;Steve Vandebogart;C. Frey;David Ziegler;E. Kohler;David Mazières;F. Kaashoek;R. Morris

文献摘要

被引文献

相似文献

Asphalt是一个新的原型操作系统,它提供了新颖的标签和隔离机制,有助于遏制可利用的软件缺陷的影响。应用程序可以使用Asphalt的内核强制标签机制来表达广泛的策略,包括对进程间通信和系统范围的信息流的控制。新的事件流程抽象在单个流程中提供轻量级的隔离上下文,允许同一个流程代表多个用户进行操作,同时防止将任何单个用户的数据泄露给任何其他用户。使用Asynchronous标签隔离用户数据的Web服务器需要每个用户大约1.5个内存页面,这表明可以以可接受的成本实现额外的安全性。
Asbestos, a new prototype operating system, provides novel labeling and isolation mechanisms that help contain the effects of exploitable software flaws. Applications can express a wide range of policies with Asbestos's kernel-enforced label mechanism, including controls on inter-process communication and system-wide information flow. A new event process abstraction provides lightweight, isolated contexts within a single process, allowing the same process to act on behalf of multiple users while preventing it from leaking any single user's data to any other user. A Web server that uses Asbestos labels to isolate user data requires about 1.5 memory pages per user, demonstrating that additional security can come at an acceptable cost.