Integrity Assurance of Micro-kernel Operating System and Its Application

于淑英,黄皓,刘国斌
DOI: https://doi.org/10.3969/j.issn.1002-137x.2009.01.064
2009-01-01
Computer Science
Abstract:To avoid the security mechanism applied in operating systems being bypassed or tampered,this paper proposed the use of micro-kernel,multiserver architecture to assure the integrity of security kernel.Process isolation and message passing provided by the micro-kernel make the processes above isolated and protect the integrity of them effectively.Simplicity and modularity,the most obvious advantages of micro-kernel,laid an excellent base for the future formal verification.The prototype operating system,Nutos,was presented as an example on how to use these mechanisms to enforce security.It combined the multiserver architecture and the Flask security infrastructure to provide for flexibi-lity in security policies and integrity assurance for security sever and reference monitor.
What problem does this paper attempt to address?