[cap-talk] ACSAC '07 (was: Architectural Choices for Security: terminology)

Toby Murray toby.murray at comlab.ox.ac.uk
Fri Nov 16 16:25:05 EST 2007


I'm not attending ACSAC, but I hope that someone from the research group
I used to work in will be, since they're presenting a paper there on the
capability-based security architecture that was developed for a ubicomp
testbed they're working on. 

The paper is "An Overview of the Annex System" by Duncan Grove et al.
and might be of interest to those who find practical applications of
capability-based/object-cap security interesting. I'm afraid I don't
have a copy to pass around at the moment but hopefully Duncan can chime
in here with a bit more info.

On Fri, 2007-11-16 at 13:32 -0500, ken wrote:
> Will anyone on this list be attending Twenty-Third Annual Computer Security
> Applications Conference (ACSAC) December 10-14, 2007, Miami Beach Resort and
> Spa, Miami Beach, FL, USA?
> If so perhaps we could find time to meet. I have no plan (as yet) to attend
> but I am a short drive away.
> Ken Hamer-Hodges
> ken at sipantic.net 
> 
> -----Original Message-----
> From: cap-talk-bounces at mail.eros-os.org
> [mailto:cap-talk-bounces at mail.eros-os.org] On Behalf Of Karp, Alan H
> Sent: Friday, November 16, 2007 10:58 AM
> To: General discussions concerning capability systems.
> Subject: Re: [cap-talk] Architectural Choices for Security: terminology
> 
> Bill Frantz wrote:
> > 
> > How about identity-centric and reference-centric 
> > authorization?  (Ducking)
> > 
> Because roles (RBAC) and attributes (PBAC) aren't identities, and not
> all authorizations are used as references.
> 
> ________________________
> Alan Karp
> Principal Scientist
> Virus Safe Computing Initiative
> Hewlett-Packard Laboratories
> 1501 Page Mill Road
> Palo Alto, CA 94304
> (650) 857-3967, fax (650) 857-7029
> https://ecardfile.com/id/Alan_Karp
> http://www.hpl.hp.com/personal/Alan_Karp
>   
> 
> _______________________________________________
> cap-talk mailing list
> cap-talk at mail.eros-os.org
> http://www.eros-os.org/mailman/listinfo/cap-talk
> 
> _______________________________________________
> cap-talk mailing list
> cap-talk at mail.eros-os.org
> http://www.eros-os.org/mailman/listinfo/cap-talk



More information about the cap-talk mailing list