首页> 外文会议>IEEE Computer Security Foundations Workshop >Secure composition of untrusted code: wrappers and causality types
【24h】

Secure composition of untrusted code: wrappers and causality types

机译:安全组成不受信任的代码:包装器和因果类型

获取原文

摘要

We consider the problem of assembling concurrent software systems from untrusted or partially trusted off-the-shelf components, using wrapper programs to encapsulate components and enforce security policies. In previous work we introduced the box-π process calculus with constrained interaction to express wrappers and discussed the rigorous formulation of their security properties. This paper addresses the verification of wrapper information flow properties. We present a novel causal type system that statically captures the allowed flows between wrapped possibly-badly-typed components; we use it to prove that an example unidirectional-flow wrapper enforces a causal flow property.
机译:我们考虑使用包装器程序封装组件并强制执行安全策略的包装程序组装从不受信任或部分可信的现成部件组装并发软件系统的问题。在以前的工作中,我们介绍了具有受约束交互的Box-π流程计算,并讨论了其安全性质的严格制定。本文讨论了包装信息流特性的验证。我们介绍了一种新的因果型系统,静态捕获包装之间的允许流量之间的流量;我们使用它来证明一个示例单向流量包装器强制执行因果流量。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利