(Enter summary)
Abstract: A confined program is one which is unable to leak information to an unauthorized party or modify unauthorized resources. Confinement is an essential feature of any secure component-based system. This paper presents a proof of correctness of the EROS operating system architecture with respect to confinement. We give a formal statement of the requirements, construct a model of the architecture's security policy and operational semantics, and show that the architecture enforces the confinement... (Update)
Context of citations to this paper: More
.... the model itself, the formal statement of requirements, and the key pieces of the correctness proof (an unabridged proof may be found in [16, 19]) Some related work is discussed in Section 5. Finally, we discuss the implications of this work and its e ect on the original...
Cited by: More
Towards Verified Virtual Memory in L4 - Gerwin Klein And (2004)
(Correct)
Formalising the L4 microkernel API - Rafal Kolanski Gerwin
(Correct)
Verifying the EROS Confinement Mechanism - Shapiro, Weber (2000)
(Correct)
Similar documents (at the sentence level):
19.6%: A Family of Securable Protection Systems - Shapiro, Weber (1998)
(Correct)
Active bibliography (related documents): More All
1.4: Verifying Operating System Security - Shapiro, Weber (1997)
(Correct)
0.6: EROS: A Capability System - Shapiro, Smith, Farber (1997)
(Correct)
0.1: Design Evolution of the EROS Single-Level Store - Shapiro, Adams (2002)
(Correct)
Similar documents based on text: More All
0.2: Constructing a Language for Security and Safe Execution - Weber, Shapiro
(Correct)
0.1: EROS: a fast capability system - Shapiro, Smith, Farber (1999)
(Correct)
0.1: State Caching in the EROS Kernel - Implementing Efficient .. - Shapiro, Farber, Smith (1996)
(Correct)
Related documents from co-citation: More All
4: A provably secure operating system: The system (context) - NEUMANN, BOYER et al. - 1980
3: Kit: A Study in Operating System Verification
- Bevier - 1989
3: Modelling and verification of the RUBIS -kernel with SPIN (context) - Duval, Julliand - 1995
BibTeX entry: (Update)
J. S. Shapiro and S. Weber. Verifying Operating System Security. Technical Report MS-CIS97 -26, University of Pennsylvania, Philadelphia, PA, USA, 1997. 15 http://citeseer.ist.psu.edu/article/shapiro97verifying.html More
@techreport{ shapiro97verifying,
author = "J. Shapiro and S. Weber",
title = "Verifying Operating System Security",
number = "MS-CIS97-26",
institution = "University of Pennsylvania, Philadelphia, PA, USA",
year = "1997",
url = "citeseer.ist.psu.edu/article/shapiro97verifying.html" }
Citations (may not include all citations):
153
A Note on the Confinement Problem
- Lampson - 1973
114
Capability-Based Computer Systems (context) - Levy - 1984
100
Programming Semantics for Multiprogrammed Computations
- Dennis, Van Horn - 1966
24
The KeyKOS Architecture (context) - Hardy - 1985
23
A Provably Secure Operating System: The System (context) - Neumann, Boyer et al. - 1980
12
The Measured Performance of a Fast Local IPC
- Shapiro, Farber et al. - 1996
9
Improving Security and Performance for Capability Systems (context) - Karger - 1988
9
The EROS Object Reference Manual (context) - Shapiro
8
Object Oriented Transaction Processing in the KeyKOS Microke..
- Frantz, Landau - 1993
6
State Caching in the EROS Kernel -- Implementing Efficient O..
- Shapiro, Farber et al. - 1996
5
Computer Security System (context) - Logic, Patent
2
A Proof of Correctness for the EROS Confinement Mechanism CI.. (context) - Shapiro, Weber
Documents on the same site (http://www.eros-os.org/devel/00Devel.html): More
Operating System Support for Active Networks - Shapiro, Muir, Smith, Farber (1997)
(Correct)
The Measured Performance of a Fast Local IPC - Shapiro, Farber, Smith (1996)
(Correct)
Verifying the EROS Confinement Mechanism - Shapiro, Weber (2000)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC