Operating system-style protections for language-based systems

dc.contributor.advisorWallach, Dan S.
dc.creatorRudys, Algis
dc.date.accessioned2009-06-03T21:09:46Z
dc.date.available2009-06-03T21:09:46Z
dc.date.issued2007
dc.description.abstractProcess-based separation has long been the prevalent model for providing security and isolation to protection domains in computer systems. However, the recent rise of component-based systems, which execute multiple plug-ins in the same process, has exposed a weakness of processes. At the same time, the recent spate of vulnerabilities in software has revealed the usefulness of language-based schemes to supplement the protections offered by processes. I propose a language-based protection model to replace processes as the basis for providing security and isolation. In this thesis, I present three different language-based mechanisms which add particular operating system-style protection semantics to the language. Soft termination provides a mechanism for guaranteed, safe termination of a task without interfering with other modules. Garbage collector memory accounting provides an accurate accounting of the memory used by each individual task running in the language-based system. Soft boundaries is a set of static analyses to verify that a specified task separation policy is followed by a particular codebase. These mechanisms provide the security and isolation that process-based separation provides, while tackling the problems of component-based architectures and malicious code head-on.
dc.format.extent163 p.en_US
dc.format.mimetypeapplication/pdf
dc.identifier.callnoTHESIS COMP.SCI. 2007 RUDYS
dc.identifier.citationRudys, Algis. "Operating system-style protections for language-based systems." (2007) Diss., Rice University. <a href="https://hdl.handle.net/1911/20640">https://hdl.handle.net/1911/20640</a>.
dc.identifier.urihttps://hdl.handle.net/1911/20640
dc.language.isoeng
dc.rightsCopyright is held by the author, unless otherwise indicated. Permission to reuse, publish, or reproduce the work beyond the bounds of fair use or other exemptions to copyright law must be obtained from the copyright holder.
dc.subjectComputer science
dc.titleOperating system-style protections for language-based systems
dc.typeThesis
dc.type.materialText
thesis.degree.departmentComputer Science
thesis.degree.disciplineEngineering
thesis.degree.grantorRice University
thesis.degree.levelDoctoral
thesis.degree.nameDoctor of Philosophy
Files
Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
3256734.PDF
Size:
8.79 MB
Format:
Adobe Portable Document Format