Title
Hidden software capabilities
Abstract
Software capabilities are a very convenient means to protect co-operating applications. They allow access rights to be dynamically exchanged between mutually suspicious interacting applications. However in all the proposed approaches, capabilities are made available at the programming language level, requiring application developers to wire protection definition in the application code, which is detrimental to both flexibility and reusability. We believe instead that capabilities should be hidden from the application programmer allowing protection definition and application code to be clearly separated. In this paper we propose a new protection model based on hidden software capabilities, in which protection definition is completely disjoined from the application code and described in an extended interface definition language (IDL). This allows to specify protection for existing modules and to easily change the protection policy of an application. This protection model can be integrated in a wide range of operating systems. We are currently implementing it in a single address space operating system based on distributed shared memory.
Year
Venue
Keywords
1996
ICDCS
application programmer,application developer,extended interface definition language,application code,protection model,suspicious interacting application,protection definition,hidden software capability,protection policy,new protection model,co-operating application
DocType
ISBN
Citations 
Conference
0-8186-7398-2
15
PageRank 
References 
Authors
1.18
8
2
Name
Order
Citations
PageRank
J. Mossiere1151.18
F. Saunier2151.18