首页> 外文会议>ACM symposium on Operating systems principles >Reflections on the verification of the security of an operating system kernel
【24h】

Reflections on the verification of the security of an operating system kernel

机译:关于验证操作系统内核安全性的思考

获取原文

摘要

This paper discusses the formal verification of the design of an operating system kernel's conformance to the multilevel security property. The kernel implements multiple protection structures to support both discretionary and nondiscretionary security policies. The design of the kernel was formally specified. Mechanical techniques were used to check that the design conformed to the multilevel security property. All discovered security flaws were then either closed or minimized. This paper considers the multilevel security model, the verification methodology, and the verification tools used. This work is significant for two reasons. First, it is for a complete implementation of a commercially available secure computer system. Second, the verification used off-the-shelf tools and was not done by the verification environment researchers.

机译:

本文讨论了操作系统内核设计是否符合多级安全性的形式形式验证。内核实现了多种保护结构,以支持自由裁量和非自由裁量安全策略。内核的设计已正式指定。使用机械技术来检查设计是否符合多层安全性属性。然后关闭所有发现的安全漏洞或将其最小化。本文考虑了多级安全模型,验证方法和所使用的验证工具。这项工作意义重大,有两个原因。首先,它是用于完整实施市售的安全计算机系统。其次,验证使用的是现成的工具,而不是由验证环境研究人员完成的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号