secguard: secure and practical integrity protection model for operating systems
文献类型:会议论文
作者 | Zhai Ennan ; Shen Qingni ; Wang Yonggang ; Yang Tao ; Ding Liping ; Qing Sihan |
出版日期 | 2011 |
会议名称 | 13th Asia-Pacific Conference on Web Technology, APWeb 2011 |
会议日期 | April 18, |
会议地点 | Beijing, China |
关键词 | Computer operating systems Network security |
页码 | 370-375 |
英文摘要 | Host compromise is a serious security problem for operating systems. Most previous solutions based on integrity protection models are difficult to use; on the other hand, usable integrity protection models can only provide limited protection. This paper presents SecGuard, a secure and practical integrity protection model. To ensure the security of systems, SecGuard provides provable guarantees for operating systems to defend against three categories of threats: network-based threat, IPC communication threat and contaminative file threat. To ensure practicability, SecGuard introduces several novel techniques. For example, SecGuard leverages the information of existing discretionary access control information to initialize integrity labels for subjects and objects in the system. We developed the prototype system of SecGuard based on Linux Security Modules framework (LSM), and evaluated the security and practicability of SecGuard. © 2011 Springer-Verlag Berlin Heidelberg. |
收录类别 | EI |
会议录 | Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
![]() |
会议录出版地 | Germany |
ISSN号 | 3029743 |
ISBN号 | 9783642202902 |
源URL | [http://124.16.136.157/handle/311060/14233] ![]() |
专题 | 软件研究所_基础软件国家工程研究中心_会议论文 |
推荐引用方式 GB/T 7714 | Zhai Ennan,Shen Qingni,Wang Yonggang,et al. secguard: secure and practical integrity protection model for operating systems[C]. 见:13th Asia-Pacific Conference on Web Technology, APWeb 2011. Beijing, China. April 18,. |
入库方式: OAI收割
来源:软件研究所
浏览0
下载0
收藏0
其他版本
除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。