HIERARCHICAL APPROACH TO COMPUTER SYSTEM INTEGRITY

被引:6
作者
DONOVAN, JJ
MADNICK, SE
机构
[1] MIT,ALFRED P SLOAN SCH MANAGEMENT,CAMBRIDGE,MA 02139
[2] MIT,CTR INFORMATION SYST,CAMBRIDGE,MA 02139
关键词
COMPUTER SYSTEMS PROGRAMMING - Time Sharing Programs;
D O I
10.1147/sj.142.0188
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Security is an important factor if the programs of independent and possibly error-prone or malicious users are to coexist on the same computer system. In this paper, it is shown that a hierarchically structured operating system, such as produced by a virtual machine system, that combines a virtual machine monitor with several independent operating systems (VMM/OS), provides substantially better software security than a conventional two-level multiprogramming operating system approach. This added protection is derived from redundant security using independent mechanisms that are inherent in the design of most VMM/OS systems. Such a system can be obtained by exploiting existing software resources.
引用
收藏
页码:188 / 202
页数:15
相关论文
共 30 条