2006
DOI: 10.1007/11863908_9
|View full text |Cite
|
Sign up to set email alerts
|

Discretionary Capability Confinement

Abstract: Abstract. Motivated by the need of application-level access control in dynamically extensible systems, this work proposes a static annotation system for modeling capabilies in a Java-like programming language. Unlike previous language-based capability systems, the proposed annotation system can provably enforce capability confinement. This confinement guarantee is leveraged to model a strong form of separation of duty known as hereditary mutual suspicion. The annotation system has been fully implemented in a s… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1

Citation Types

0
1
0

Year Published

2006
2006
2024
2024

Publication Types

Select...
4
1

Relationship

1
4

Authors

Journals

citations
Cited by 5 publications
(1 citation statement)
references
References 40 publications
0
1
0
Order By: Relevance
“…Likewise, also confined types can be understood using the concept of capabilities that are represented by types (Fong 2005). This idea is further elaborated by Fong in (Fong & Zhang 2004), (Fong 2006), (Fong 2008), and (Fong & Orr 2006). In the first paper, an additional type system is introduced that allows to specify the permitted operations on an object as it is passed from one method to the next.…”
Section: Type-based Securitymentioning
confidence: 94%
“…Likewise, also confined types can be understood using the concept of capabilities that are represented by types (Fong 2005). This idea is further elaborated by Fong in (Fong & Zhang 2004), (Fong 2006), (Fong 2008), and (Fong & Orr 2006). In the first paper, an additional type system is introduced that allows to specify the permitted operations on an object as it is passed from one method to the next.…”
Section: Type-based Securitymentioning
confidence: 94%