Making information flow explicit in HiStar

Nickolai Zeldovich,Silas Boyd-Wickizer,E. Kohler,David Mazières

Published 2006 in USENIX Symposium on Operating Systems Design and Implementation

ABSTRACT

HiStar is a new operating system designed to minimize the amount of code that must be trusted. HiStar provides strict information flow control, which allows users to specify precise data security policies without unduly limiting the structure of applications. HiStar's security features make it possible to implement a Unix-like environment with acceptable performance almost entirely in an untrusted user-level library. The system has no notion of superuser and no fully trusted code other than the kernel. HiStar's features permit several novel applications, including an entirely untrusted login process, separation of data between virtual private networks, and privacy-preserving, untrusted virus scanners.

PUBLICATION RECORD

  • Publication year

    2006

  • Venue

    USENIX Symposium on Operating Systems Design and Implementation

  • Publication date

    2006-11-06

  • Fields of study

    Computer Science

  • Identifiers
  • External record

    Open on Semantic Scholar

  • Source metadata

    Semantic Scholar

CITATION MAP

EXTRACTION MAP

CLAIMS

  • No claims are published for this paper.

CONCEPTS

  • No concepts are published for this paper.

REFERENCES

Showing 1-25 of 25 references · Page 1 of 1

CITED BY

Showing 1-100 of 644 citing papers · Page 1 of 7