학술논문

Flexible policy-directed code safety
Document Type
Conference
Source
Proceedings of the 1999 IEEE Symposium on Security and Privacy (Cat. No.99CB36344) Security and privacy Security and Privacy, 1999. Proceedings of the 1999 IEEE Symposium on. :32-45 1999
Subject
Computing and Processing
Safety
Java
Prototypes
Laboratories
Computer science
Computer architecture
Identity-based encryption
National security
Operating systems
Language
ISSN
1081-6011
Abstract
The article introduces a new approach to code safety. We present Naccio, a system architecture that allows a large class of safety policies to be expressed in a general and platform-independent way. Policies are defined in terms of abstract resource manipulations. We describe mechanisms that can be used to efficiently and conveniently enforce these safety policies by transforming programs. We are developing implementations of Naccio that enforce policies on JavaVM classes and Win32 executables. We report on results using the JavaVM prototype.