Sur la conception d'un service de changement ...
Document type :
Communication dans un congrès avec actes
Title :
Sur la conception d'un service de changement de contexte et de sa preuve dans le proto-noyau Pip
Author(s) :
Vanhems, Florian [Auteur]
Extra Small Extra Safe [2XS]
Jomaa, Narjes [Auteur]
Extra Small Extra Safe [2XS]
Hym, Samuel [Auteur]
Extra Small Extra Safe [2XS]
Nowak, David [Auteur]
Extra Small Extra Safe [2XS]
Extra Small Extra Safe [2XS]
Jomaa, Narjes [Auteur]
Extra Small Extra Safe [2XS]
Hym, Samuel [Auteur]
Extra Small Extra Safe [2XS]
Nowak, David [Auteur]
Extra Small Extra Safe [2XS]
Conference title :
ENTROPY 2019
City :
Stockholm
Country :
Suède
Start date of the conference :
2019-06-19
Journal title :
ENabling TRust through Os Proofs... and beYond - 2nd Internatonal Workshop, ENTROPY 2019, Stockholm, Sweden, June 16, 2019
Publication date :
2019-06-16
HAL domain(s) :
Informatique [cs]/Systèmes et contrôle [cs.SY]
Informatique [cs]/Système d'exploitation [cs.OS]
Informatique [cs]/Logique en informatique [cs.LO]
Informatique [cs]/Système d'exploitation [cs.OS]
Informatique [cs]/Logique en informatique [cs.LO]
English abstract : [en]
The Pip protokernel is a kernel whose trusted computing base is reduced to its bare bones. The goal of such minimisation is twofold: reduce the attack surface and reduce the cost of the formal proof of security. In particular, ...
Show more >The Pip protokernel is a kernel whose trusted computing base is reduced to its bare bones. The goal of such minimisation is twofold: reduce the attack surface and reduce the cost of the formal proof of security. In particular, multiplexing is not implemented in the kernel but in a partition whose code is executed in user mode. This of course assumes that the kernel provides minimal services dedicated to signal sending. In this paper, we describe a streamlined service designed to allow for inter-partition communication through userland structures that mimic the traditional Interrupt Descriptor Table.Show less >
Show more >The Pip protokernel is a kernel whose trusted computing base is reduced to its bare bones. The goal of such minimisation is twofold: reduce the attack surface and reduce the cost of the formal proof of security. In particular, multiplexing is not implemented in the kernel but in a partition whose code is executed in user mode. This of course assumes that the kernel provides minimal services dedicated to signal sending. In this paper, we describe a streamlined service designed to allow for inter-partition communication through userland structures that mimic the traditional Interrupt Descriptor Table.Show less >
Language :
Anglais
Peer reviewed article :
Oui
Audience :
Internationale
Popular science :
Non
Collections :
Source :
Files
- https://hal.archives-ouvertes.fr/hal-02347481/document
- Open access
- Access the document
- https://hal.archives-ouvertes.fr/hal-02347481/document
- Open access
- Access the document
- https://hal.archives-ouvertes.fr/hal-02347481/document
- Open access
- Access the document
- document
- Open access
- Access the document
- ENTROPY_2019.pdf
- Open access
- Access the document