• DocumentCode
    1298227
  • Title

    Privilege transfer and revocation in a port-based system

  • Author

    Ramamritham, Krithivasan ; Stemple, David ; Briggs, David A. ; Vinter, Stephen

  • Author_Institution
    Dept. of Comput. & Inf. Sci., Massachusetts Univ., Amherst, MA, USA
  • Issue
    5
  • fYear
    1986
  • fDate
    5/1/1986 12:00:00 AM
  • Firstpage
    635
  • Lastpage
    648
  • Abstract
    Gutenberg is a port-based operating system being designed to study protection issues in distributed systems. All shared resources are viewed as protected objects and hence can be assessed only via specific operations defined on them. Processes communicate and access objects through the use of ports. Each port is associated with an abstract data type operation and can be created by a process only if the process has the capability to execute the operation on the type. Thus, a port represents the privilege of the port´s client process to request a service. Capabilities to create ports for requesting operations are contained in a capability directory, which is navigated by processes to gain these capabilities. Privilege transfer is a means of providing servers access to the resources they need to perform their services. In Gutenberg, privilege transfer is accomplished by allowing access to subdirectories of the capability directory and by passing capabilities, including port access capabilities, to processes via ports. It should be possible to revoke transferred privileges when breaches of trust are detected or suspected, when a period of time has passed beyond which the distributor of a privilege does not want the privilege shared, or when an error has been detected.
  • Keywords
    distributed processing; operating systems (computers); security of data; Gutenberg; abstract data type operation; capability directory; distributed systems; operating system; port access; port-based system; privilege transfer; protection issues; Abstracts; Bibliographies; Kernel; Servers; Transient analysis; Interprocess communication; operating systems; privilege transfer; protection; revocation;
  • fLanguage
    English
  • Journal_Title
    Software Engineering, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    0098-5589
  • Type

    jour

  • DOI
    10.1109/TSE.1986.6312959
  • Filename
    6312959