Mandatory security and performance of services in Asbestos
Name
62558230-MIT.pdf
Description
Full printable version
Size
2.76 MB
Format
Adobe PDF
Checksum (MD5)
3d0a217c0de9477bb2377ad9df0471df
Author(s)
Ziegler, David Patrick
Advisor(s)
M. Frans Kaashoek.
Date Issued
2005
Publisher
Massachusetts Institute of Technology
Abstract
This thesis presents the design and implementation for several system services, including network access and database storage, on a new operating system design, Asbestos. Using the security mechanism provided by Asbestos, Asbestos labels, these services are used to support the construction of secure Web applications. The network and database services serve as the foundation for a Web server that supports mandatory security policies, such that even a compromised Web application cannot improperly disclose private data. The methods used in this thesis allow Web application developers to be freed from worries about flawed applications, if developers are willing to place trust in the underlying services used.
Description
Thesis (M. Eng.)--Massachusetts Institute of Technology, Dept. of Electrical Engineering and Computer Science, 2005.
Includes bibliographical references (p. 61-66).
Subjects
Electrical Engineering and Computer Science.
MIT Department
Massachusetts Institute of Technology. Department of Electrical Engineering and Computer Science
Terms of Use
M.I.T. theses are protected by copyright. They may be viewed from this source for any purpose, but reproduction or distribution in any format is prohibited without written permission. See provided URL for inquiries about permission.
Persistent DSpace Link