At 21:46 +0300 8/8/99, Eyal Lotem wrote:
>I'm generally very interested in EROS and capability systems, but I might
>be misinformed about it, so please correct me if I get it all wrong.
...
Many interesting questions elided!
I am not sure whether your reference to Virtual Machine is to be taken in the sense used in "Java Virtual Machine" <http://java.sun.com/docs/books/vmspec/ > or in IBM's older sense as in "VM/370". (See <http://www.mediacity.com/~norm/CP.html>). VMWare, a new product <http://www.vmware.com/>, also uses the older meaning. Both types of system have interesting security ramifications.
You have proded me into returning to my web page (above) to add points
about the security of systems such as VM/370 and perhaps VMWare. Capability
discipline is a useful tool in considering such issues. Hopefully some meat
to come.
Norman Hardy <http://www.mediacity.com/~norm>