(Enter summary)
Abstract: A precise characterization of those security policies enforceable by program rewriting is
given. This characterization exposes and rectifies problems in prior work on execution monitoring,
yielding a more precise characterization of those security policies enforceable by execution
monitors and a taxonomy of enforceable security policies. Some but not all classes can be
identified with known classes from computational complexity theory. (Update)
Cited by: More
Proof Linking: A Modular Verification Architecture for Mobile Code .. - Fong (2004)
(Correct)
Enforcing High-Level Security Properties for Applets - Pavlova, Barthe, Burdy.. (2004)
(Correct)
Capabilities as Alias Control: Secure Cooperation in.. - Fong, Zhang (2004)
(Correct)
Active bibliography (related documents): More All
1.8: Computability Classes for Enforcement Mechanisms - Hamlen, Morrisett, Schneider (2003)
(Correct)
0.3: A Guide to Understanding Security Modeling in Trusted Systems - NCSC (1992)
(Correct)
0.2: A Type System for Expressive Security Policies - Walker (1999)
(Correct)
Similar documents based on text: More All
0.2: Cryptographic Support for Fault-Tolerant Distributed.. - Minsky, van Renesse.. (1996)
(Correct)
0.2: IRM Enforcement of Java Stack Inspection - Erlingsson, Schneider (2000)
(Correct)
0.2: A Language-Based Approach to Security - Schneider, Morrisett, Harper (2000)
(Correct)
Related documents from co-citation: More All
5: IRM enforcement of java stack inspection
- Erlingsson, Schneider - 2000
5: Proof-carrying code
- Necula - 1997
5: SASI enforcement of security policies: A retrospective
- Erlingsson, Schneider - 1999
BibTeX entry: (Update)
K. Hamlen, G. Morrisett, and F.B. Schneider. Computability classes for enforcement mechanisms. Technical Report 2003-1908, Department of Computer Science, Cornell University, 2003. http://citeseer.ist.psu.edu/article/hamlen03computability.html More
@misc{ hamlen03computability,
author = "K. Hamlen and G. Morrisett and F. Schneider",
title = "Computability classes for enforcement mechanisms",
text = "K. Hamlen, G. Morrisett, and F.B. Schneider. Computability classes for
enforcement mechanisms. Technical Report 2003-1908, Department of Computer
Science, Cornell University, 2003.",
year = "2003",
url = "citeseer.ist.psu.edu/article/hamlen03computability.html" }
Citations (may not include all citations):
566
Proof-Carrying Code
- Necula - 1997
264
Safe kernel extensions without run-time checking
- Necula, Lee - 1996
197
Revised 4 report on the algorithmic language Scheme
- Rees, Clinger - 1991
150
Computational Complexity (context) - Papadimitriou - 1995
137
The design and implementation of a certifying compiler
- Necula, Lee - 1998
124
Protection in operating systems (context) - Harrison, Ruzzo et al. - 1976
116
Aspect-oriented programming
- Kiczales, Lamping et al. - 1997
95
On computable numbers with an application to the Entscheidun.. (context) - Turing - 1936
81
SASI enforcement of security policies: A retrospective
- Erlingsson, Schneider - 2000
75
Flexible policy-directed code safety
- Evans, Twynman - 1999
68
Uber formal unentscheidbare satze der Principia Mathematica .. (context) - Godel - 1931
65
The Java Virtual Machine Specification (context) - Lindholm, Yellin - 1999
47
IRM enforcement of Java stack inspection
- Erlingsson, Schneider - 2000
46
ACM Transactions on Programming Languages and Systems (context) - Morrisett, Crary et al. - 1999
45
ACM Transactions on Information and Systems Security (context) - Schneider, policies - 2000
44
cient softwarebased fault isolation (context) - Wahbe, Lucco et al. - 1993
27
A flexible measurement tool for software systems (context) - Deutsch, Grant - 1971
19
More enforceable security policies
- Bauer, Ligatti et al. - 2002
13
Foundations for the Run-time Analysis of Software Systems (context) - Viswanathan - 2000
10
Computer virus--antivirus coevolution (context) - Nachenberg - 1997
6
IEEE Transactions on Software Engineering SE (context) - Lamport, correctness et al. - 1977
6
MiSFIT: A tool for constructing safe extensible C++ systems (context) - Small - 1997
5
Practical mostly-static information flow control (context) - Myers - 1999
3
Computer security technology planning study vols (context) - Anderson - 1972
2
A Formal PM Construction There are many equivalent ways to f.. (context) - Ware, for et al. - 1979
The graph only includes citing articles where the year of publication is known.
Documents on the same site (http://www.cs.cornell.edu/fbs/fullist.htm): More
Implementing Fault-Tolerant Services Using the State Machine.. - Schneider (1990)
(Correct)
IRM Enforcement of Java Stack Inspection - Erlingsson, Schneider (2000)
(Correct)
User Recovery and Reversal in Interactive Systems - Archer, Jr., Conway, Schneider (1984)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC