[cap-talk] Building a bridge: library API's and file descriptors?

Karp, Alan H alan.karp at hp.com
Wed Feb 4 19:24:55 EST 2009


Matej Kosik wrote:
> 
> It may be that vendors hope that these efforts:
> - SELinux (RedHat)
>   http://www.redhat.com/f/pdf/sec/WHP001USselinux.pdf

Known to be unmanageable for many real world use cases.

> - Code Access Security (Microsoft)
>   http://www2.computer.org/portal/web/csdl/doi/10.1109/MSP.2008.146

YASIS: Yet another stack introspection scheme.

> - Android Security (Google)
>   http://www2.computer.org/portal/web/csdl/doi/10.1109/MSP.2009.26
>
On the right track but talks about asking the user, not using acts of designation.  Time will tell.

________________________
Alan Karp
Principal Scientist
Virus Safe Computing Initiative
Hewlett-Packard Laboratories
1501 Page Mill Road
Palo Alto, CA 94304
(650) 857-3967, fax (650) 857-7029
http://www.hpl.hp.com/personal/Alan_Karp




More information about the cap-talk mailing list