Making Information Flow Explicit in HiStar

被引:33
|
作者
Zeldovich, Nickolai [1 ]
Boyd-Wickizer, Silas [1 ]
Kohler, Eddie [2 ]
Mazieres, David [3 ]
机构
[1] MIT, CSAIL, Cambridge, MA 02139 USA
[2] Univ Calif Los Angeles, Los Angeles, CA USA
[3] Stanford Univ, Stanford, CA 94305 USA
关键词
D O I
10.1145/2018396.2018419
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
HiStar is a new operating system designed to minimize the amount of code that must be trusted. HiStar provides strict information flow control, which allows users to specify precise data security policies without unduly limiting the structure of applications. HiStar's security features make it possible to implement a Unix-like environment with acceptable performance almost entirely in an untrusted user-level library. The system has no notion of superuser and no fully trusted code other than the kernel. HiStar's features permit several novel applications, including privacy-preserving, untrusted virus scanners and a dynamic Web server with only a few thousand lines of trusted code.
引用
收藏
页码:93 / 101
页数:9
相关论文
共 50 条
  • [1] Making information flow explicit in HiStar
    Zeldovich, Nickolai
    Boyd-Wickizer, Silas
    Kohler, Eddie
    Mazieres, David
    USENIX ASSOCIATION 7TH USENIX SYMPOSIUM ON OPERATING SYSTEMS DESIGN AND IMPLEMENTATION, 2006, : 263 - +
  • [2] Analyzing Explicit Information Flow
    Rajamani, Sriram K.
    INFORMATION SYSTEMS SECURITY, 2010, 6503 : 1 - 2
  • [3] MAKING INFORMATION-FLOW
    MARTIN, JM
    MANUFACTURING ENGINEERING, 1989, 102 (05): : 75 - 78
  • [4] Making the processes of designing explicit within an information technology environment
    Stein, SJ
    Docherty, M
    Hannam, R
    INTERNATIONAL JOURNAL OF TECHNOLOGY AND DESIGN EDUCATION, 2003, 13 (02) : 145 - 170
  • [5] Making the Processes of Designing Explicit Within an Information Technology Environment
    Sarah J. Stein
    Michael Docherty
    Rachel Hannam
    International Journal of Technology and Design Education, 2003, 13 : 145 - 170
  • [6] Making the ineffable explicit: estimating the information employed for face classifications
    Mangini, MC
    Biederman, I
    COGNITIVE SCIENCE, 2004, 28 (02) : 209 - 226
  • [7] Merlin: Specification Inference for Explicit Information Flow Problems
    Livshits, Benjamin
    Nori, Aditya V.
    Rajamani, Sriram K.
    Banerjee, Anindya
    ACM SIGPLAN NOTICES, 2009, 44 (06) : 75 - 86
  • [8] Merlin: Specification Inference for Explicit Information Flow Problems
    Livshits, Benjamin
    Nori, Aditya V.
    Rajamani, Sriram K.
    Banerjee, Anindya
    PLDI'09 PROCEEDINGS OF THE 2009 ACM SIGPLAN CONFERENCE ON PROGRAMMING LANGUAGE DESIGN AND IMPLEMENTATION, 2009, : 75 - 86
  • [9] State Of Flow And Storing Information: Towards A Purification Of The explicit
    Chniti, Nesrine Akkari
    Bousslama, Neji
    INNOVATION AND KNOWLEDGE MANAGEMENT IN TWIN TRACK ECONOMIES: CHALLENGES & SOLUTIONS, VOLS 1-3, 2009, : 1130 - 1141
  • [10] Signature required: Making Simulink data flow and interfaces explicit
    Bender, Marc
    Laurin, Karen
    Lawford, Mark
    Pantelic, Vera
    Korobkine, Alexandre
    Ong, Jeff
    Mackenzie, Bennett
    Bialy, Monika
    Postma, Steven
    SCIENCE OF COMPUTER PROGRAMMING, 2015, 113 : 29 - 50