[cap-talk] 'Destroy' vs 'Sever'

Bill Frantz frantz at pwpconsult.com
Sun Dec 2 19:57:38 EST 2007


clandau at macslab.com (Charles Landau) on Sunday, December 2, 2007 wrote:

>At 11:07 PM -0800 11/27/07, Jed Donnelley wrote:
>>At 05:03 PM 11/27/2007, Charles Landau wrote:
>>  >In KeyKOS/EROS/CapROS, you call a SpaceBank saying "Sever this
>>>node/page that you created".
>>
>>When you say "call a SpaceBank", using what capability?
>>Not the node/page capability apparently.  Is there a
>>separate 'SpaceBank' capability that is used for this
>>communication?
>
>Yes. It's the capability you use to allocate new nodes/pages.
>
>
>I'm getting the sense that existing code doesn't use Sever, and uses 
>are limited, so it's probably not important to support it.

The other saving grace is that if a need for it becomes apparent, it
will not be hard to put back in.  With David Hopwood's point that it
can be implemented in user code (if you don't worry about store order),
you don't have to worry about adding a vulnerability if you do put it
back in.

Cheers - Bill

-------------------------------------------------------------------------
Bill Frantz        | The first thing you need when  | Periwinkle
(408)356-8506      | using a perimeter defense is a | 16345 Englewood Ave
www.pwpconsult.com | perimeter.                     | Los Gatos, CA 95032



More information about the cap-talk mailing list