Title :
Preventing denial-of-service attacks on a μ-kernel for WebOSes
Author :
Liedtke, Jochen ; Islam, Nayeem ; Jaeger, Trent
Author_Institution :
IBM Thomas J. Watson Res. Center, Yorktown Heights, NY, USA
Abstract :
A goal of World Wide Web operating systems (WebOSes) is to enable clients to download executable content from servers connected to the World Wide Web (WWW). This will make applications more easily available to clients, but some of these applications may be malicious. Thus, a WebOS must be able to control the downloaded content´s behavior. We examine a specific type of malicious activity: denial of service attacks using legal system operations. A denial of service attack occurs when an attacker prevents other users from performing their authorized operations. Even when the attacker may not be able to perform such operations. Current systems either do little to prevent denial of service attacks or have a limited scope of prevention of such attacks. For a WebOS, however, the ability to prevent denial of service should be an integral part of the system. We are developing a WebOS using the L4 μ kernel as its substrate. We evaluate L4 as a basis of a system that can prevent denial of service attacks. In particular, we identify the μ kernel related resources which are subject to denial of service attacks and define μ kernel mechanisms to defend against such attacks. Our analysis demonstrates that system resource utilization can be managed by trusted user level servers to prevent denial of service attacks on such resources
Keywords :
Internet; authorisation; computer crime; network operating systems; operating system kernels; μ kernel mechanisms; μ kernel related resources; μ-kernel; L4 μ kernel; WebOSes; World Wide Web operating systems; authorized operations; denial of service attack prevention; executable content; legal system operations; malicious activity; system resource utilization; trusted user level servers; Authentication; Authorization; Computer bugs; Computer crime; Data security; Driver circuits; Hardware; Mechanical factors; Robustness; Yarn;
Conference_Titel :
Operating Systems, 1997., The Sixth Workshop on Hot Topics in
Conference_Location :
Cape Cod, MA
Print_ISBN :
0-8186-7834-8
DOI :
10.1109/HOTOS.1997.595186