首页> 外文会议>IEEE Symposium on Security and Privacy >Secure Execution of Java Applets using a Remote Playground
【24h】

Secure Execution of Java Applets using a Remote Playground

机译:使用远程游乐场安全执行Java applet

获取原文

摘要

Mobile code presents a number of threats to machines that execute it. We introduce an approach for protecting machines and the resources they hold from mobile code, and describe a system based on our approach for protecting host machines from Java 1.1 applets. In our approach, each Java applet downloaded to the protected domain is rerouted to a dedicated machine (or set of machines), the playground, at which it is executed. Prior to execution the applet is transformed to use the downloading user's web browser as a graphics terminal for its input and output, and so the user has the illusion that the applet is running on her own machine. In reality, however, mobile code runs only in the sanitized environment of the playground, where user files cannot be mounted and from which only limited network connections are accepted by machines in the protected domain. Our playground thus provides a second level of defense against mobile code that circumvents language-based defenses.
机译:移动代码对执行它的计算机提供了许多威胁。我们介绍了一种保护机器的方法和它们掌握的资源,并根据我们保护来自Java 1.1 applet的主机机的方法来描述一个系统。在我们的方法中,将下载到受保护域的每个Java applet都被重新输出到专用机器(或机器集),游乐场,它被执行。在执行之前,将Applet转换为使用下载用户的Web浏览器作为其输入和输出的图形终端,因此用户具有应用程序在自己的计算机上运行的错觉。然而,实际上,移动代码仅在游乐场的消毒环境中运行,其中用户文件无法安装,并且在受保护域中的计算机接受仅受限的网络连接。因此,我们的游乐场为对避免语言的防御的移动代码提供了第二级防护。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号