DocumentCode :
2317363
Title :
Transparent mistrust: OS support for cryptography-in-the-large
Author :
Blaze, Matt
Author_Institution :
AT&T Bell Labs., Holmdel, NJ, USA
fYear :
1993
fDate :
14-15 Oct 1993
Firstpage :
98
Lastpage :
102
Abstract :
This position paper advocates the development of new mechanisms to support cooperative computing requiring less than complete trust. Traditional OS security mechanisms have assumed a monolithic or hierarchical model for controlling and arbitrating access to local resources. Operating systems authenticate users as they log in and enforce controlled access to files, devices and memory. Distributed systems change the picture somewhat, with less-trusted clients obtaining some resources from centralized servers, but typically retain some notion of central authority within a framework of global trust and control. Boundaries of trust are going to become increasingly important to future workstation operating systems. Cryptographic algorithms and protocols can protect these boundaries, but the interfaces to them need some attention first. Our experiences, which are admittedly within the research environment, lead us to believe that cryptographic protection can be quite practical across a variety of layers of the system; importantly, no one layer emerges as a decisive winner as to where this protection best belongs. (The application layer, however, does appear to be the clear loser.)
Keywords :
cooperative systems; cryptography; operating systems (computers); protocols; OS security mechanisms; OS support; cooperative computing; cryptographic algorithms; cryptographic protection; cryptography; protocols; trust; trust and control; workstation operating systems; Control systems; Data security; File servers; File systems; Hardware; Network servers; Protection; Public key cryptography; Smart cards; Workstations;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Workstation Operating Systems, 1993. Proceedings., Fourth Workshop on
Conference_Location :
Napa, CA
Print_ISBN :
0-8186-4000-6
Type :
conf
DOI :
10.1109/WWOS.1993.348165
Filename :
348165
Link To Document :
بازگشت