Title :
SASI enforcement of security policies: a retrospective
Author :
Erlingsson, Úlfar ; Schneider, Fred B.
Author_Institution :
Dept. of Comput. Sci., Cornell Univ., Ithaca, NY, USA
fDate :
6/22/1905 12:00:00 AM
Abstract :
SASI (Security Automata SFI Implementation) enforces security policies by modifying object code for a target system before that system is executed. The approach has been prototyped for two rather different machine architectures: Intel x86 and Java JVML. Details of these prototypes and some generalizations about the SASI approach are discussed
Keywords :
Java; automata theory; security of data; Intel x86; Java JVML; SASI enforcement; Security Automata SFI Implementation; object code; security policies; target system; Control systems; Costs; Electrical capacitance tomography; Government; Hardware; Operating systems; Prototypes; Read-write memory; Security; Switches;
Conference_Titel :
DARPA Information Survivability Conference and Exposition, 2000. DISCEX '00. Proceedings
Conference_Location :
Hilton Head, SC
Print_ISBN :
0-7695-0490-6
DOI :
10.1109/DISCEX.2000.821527