Title :
UNIX Guardians: active user intervention in data protection
Author :
Davida, George I. ; Matt, Brian J.
Author_Institution :
Dept. of Electr. Eng. & Comput. Sci., Wisconsin Univ., Milwaukee, WI, USA
Abstract :
The GUARDNIX system is tailored for user participation in the protection of data. The system, an enhanced 4.2 BSD Unix, utilizes a special class of processes called Guardians to change normally passive files into active objects. Multiple processors are used to physically separate normal processes from the main operating system kernel. Data is provided additional protection by using cryptography. The file directory tree is partitioned, with the subtrees attached to Guardians. GUARDNIX reduces the need for roots and does not allow root processes during normal operations
Keywords :
Unix; file organisation; security of data; GUARDNIX system; Unix Guardians; active objects; active user intervention; cryptography; data protection; file directory tree; main operating system kernel; multiple processors; root processes; subtrees; user participation; Centralized control; Communication system security; Cryptography; Emulation; File systems; Hardware; Kernel; Operating systems; Protection; Trademarks;
Conference_Titel :
Aerospace Computer Security Applications Conference, 1988., Fourth
Conference_Location :
Orlando, FL
Print_ISBN :
0-8186-0895-1
DOI :
10.1109/ACSAC.1988.113441