A proof-carrying file system with revocable and use-once certificates

  • Authors:
  • Jamie Morgenstern;Deepak Garg;Frank Pfenning

  • Affiliations:
  • Carnegie Mellon University;Carnegie Mellon University;Carnegie Mellon University

  • Venue:
  • STM'11 Proceedings of the 7th international conference on Security and Trust Management
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

We present the design and implementation of a file system which allows authorizations dependent on revocable and use-once policy certificates. Authorizations require explicit proof objects, combining ideas from previous authorization logics and Girard's linear logic. Use-once certificates and revocations lists are maintained in a database that is consulted during file access. Experimental results demonstrate that the overhead of using the database is not significant in practice.