课题基金 / 基金详情

SGER: Enabling Electronic Self-Defense with Dynamic Identities

SGER: Enabling Electronic Self-Defense with Dynamic Identities
SGER:通过动态身份实现电子自卫
批准号:
0549087
负责人:
Douglas Thain
金额:
$9.95万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2005
资助国家:
美国
项目状态:
已结题
起止时间:
2005-09-01 至 2007-08-31

项目摘要

项目成果

Douglas Thain的其他基金

相似基金

相关文献

中文摘要
翻译
NSF 0549087SGER:启用动态身份的电子自卫espi: Douglas Thain在许多操作系统中,只有高度特权的用户(“超级用户”)才能创建新用户。这个限制使普通用户无法保护自己免受不可信应用程序的侵害,因为用户很难创建一个新的、更受限制的环境来运行有问题的应用程序。它也给软件设计师带来了一个不舒服的选择:他们要么以普通用户的身份运行,把自己置于危险之中,要么以超级用户的身份运行,把整个系统置于危险之中。这个问题已经困扰了技术社区几十年,现在又影响到网络和网格计算领域的公众。动态身份的概念解决了这个问题。在具有动态标识的操作系统中,任何用户都可以在运行时创建子标识,而无需与管理员交互。单个用户可以通过使用动态身份来运行不受信任的程序来进行自我防御。动态身份还简化了分布式系统的管理:可以根据本地或全局准入策略动态创建帐户。本研究将通过实现该概念并使用该实现探索现有开源操作系统中的权衡来评估该概念。初步工作将调查应用程序和操作系统之间的交互。这项工作的结果将是描述和评估动态标识的实现、应用和部署的经验报告
英文摘要
NSF 0549087SGER: Enabling Electronic Self-Defense with Dynamic IdentitiesPI: Douglas Thain In many operating systems, only a highly privileged user (a "super user") is allowed to create new users. This limitation prevents ordinary users from protecting themselves from untrustworthy applications, because it is difficult for a user to create a new, more restricted environment in which to run questionable applications. It also presents software designers with an uncomfortable choice: they may either run as an ordinary user and put themselves at risk, or they may run as the super-user and put the entire system at risk. This problem has afflicted the technical community for decades and now affects the public on the web and in grid computing. The concept of dynamic identities attacks this problem. In an operating system with dynamic identities, any user may create sub-identities at runtime without interacting with an administrator. Single users may perform self-defense by using dynamic identities to run untrusted programs. Dynamic identities also simplify the administration of distributed systems: accounts may be created on the fly according to local or global admission policies. This research will evaluate this concept by implementing it and using the implementation to explore the tradeoffs within an existing open source operating system. Preliminary work will investigate interactions between applications and the operating system. The results of this work will be experience reports describing and evaluating the implementation, applications, and deployment of dynamic identitie
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
CSR: Small: Accelerating Data Intensive Scientific Workflows with Consistency Contracts
  • 批准号:
    2317556
  • 项目类别:
    Standard Grant
  • 资助金额:
    $59.97万
  • 财政年份:
    2023
  • 负责人:
    Douglas Thain
  • 依托单位:
CSSI Elements: DataSwarm: A User-Level Framework for Data Intensive Scientific Applications
  • 批准号:
    1931348
  • 项目类别:
    Standard Grant
  • 资助金额:
    $56.3万
  • 财政年份:
    2019
  • 负责人:
    Douglas Thain
  • 依托单位:
REU Site: Data Intensive Scientific Computing
  • 批准号:
    1560363
  • 项目类别:
    Standard Grant
  • 资助金额:
    $35.98万
  • 财政年份:
    2016
  • 负责人:
    Douglas Thain
  • 依托单位:
SI2-SSE: Scaling up Science on Cyberinfrastructure with the Cooperative Computing Tools
  • 批准号:
    1642409
  • 项目类别:
    Standard Grant
  • 资助金额:
    $49.47万
  • 财政年份:
    2016
  • 负责人:
    Douglas Thain
  • 依托单位:
海外基金