DocumentCode
2317363
Title
Transparent mistrust: OS support for cryptography-in-the-large
Author
Blaze, Matt
Author_Institution
AT&T Bell Labs., Holmdel, NJ, USA
fYear
1993
fDate
14-15 Oct 1993
Firstpage
98
Lastpage
102
Abstract
This position paper advocates the development of new mechanisms to support cooperative computing requiring less than complete trust. Traditional OS security mechanisms have assumed a monolithic or hierarchical model for controlling and arbitrating access to local resources. Operating systems authenticate users as they log in and enforce controlled access to files, devices and memory. Distributed systems change the picture somewhat, with less-trusted clients obtaining some resources from centralized servers, but typically retain some notion of central authority within a framework of global trust and control. Boundaries of trust are going to become increasingly important to future workstation operating systems. Cryptographic algorithms and protocols can protect these boundaries, but the interfaces to them need some attention first. Our experiences, which are admittedly within the research environment, lead us to believe that cryptographic protection can be quite practical across a variety of layers of the system; importantly, no one layer emerges as a decisive winner as to where this protection best belongs. (The application layer, however, does appear to be the clear loser.)
Keywords
cooperative systems; cryptography; operating systems (computers); protocols; OS security mechanisms; OS support; cooperative computing; cryptographic algorithms; cryptographic protection; cryptography; protocols; trust; trust and control; workstation operating systems; Control systems; Data security; File servers; File systems; Hardware; Network servers; Protection; Public key cryptography; Smart cards; Workstations;
fLanguage
English
Publisher
ieee
Conference_Titel
Workstation Operating Systems, 1993. Proceedings., Fourth Workshop on
Conference_Location
Napa, CA
Print_ISBN
0-8186-4000-6
Type
conf
DOI
10.1109/WWOS.1993.348165
Filename
348165
Link To Document