Protection in Flexible Operating System Architectures - Archive ouverte HAL Accéder directement au contenu
Article Dans Une Revue Operating Systems Review Année : 2003

Protection in Flexible Operating System Architectures

Résumé

This paper presents our work concerning flexibility and protection in operating system kernels. In most existing operating systems, security is enforced at the price of flexibility by imposing protection models on the system programmer when building his system. We prove that flexibility can be preserved by separating the management of the protection policy from the tools used to enforce it. We present the secure software framework we have implemented in the Think architecture to manage protection policies and guarantee they are carried out as specified. We then detail the elementary protection tools provided to the programmer so he can protect his system against unauthorized accesses and denial of service attacks. These tools are implemented in a policy-neutral way so as to guarantee their flexibility. Finally we validate our results by evaluating the flexibility of the protection provided on selected examples of dynamic modification of the protection policy.
Fichier principal
Vignette du fichier
03-Rippert-OSR.pdf (103.83 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-00283925 , version 1 (01-06-2008)

Identifiants

Citer

Christophe Rippert. Protection in Flexible Operating System Architectures. Operating Systems Review, 2003, 37 (4), pp.8-18. ⟨10.1145/958965.958966⟩. ⟨hal-00283925⟩
136 Consultations
139 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More