Covert channel analysis of the password-capability system

  • Authors:
  • Dan Mossop;Ronald Pose

  • Affiliations:
  • School of Computer Science and Software Engineering, Monash University, Clayton, Victoria, Australia;School of Computer Science and Software Engineering, Monash University, Clayton, Victoria, Australia

  • Venue:
  • ACSAC'05 Proceedings of the 10th Asia-Pacific conference on Advances in Computer Systems Architecture
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

The Password-Capability System is a compact operating system with an access control mechanism based on password-capabilities. We show that the system is able to support several security paradigms which solve real-world problems not adequately addressed by conventional operating systems such as Windows and Unix. We show also that these paradigms are only effective if the system is free from covert channels. To this end, we carry out a covert channel analysis of the system and outline the elimination of all channels found.