Virtualizing super-user privileges for multiple virtual processes

作者: Xun Wilson Huang , Srinivasan Keshav , Cristian Estan

DOI:

关键词:

摘要: Super-user privileges are virtualized by designating a virtual super-user for each of plurality processes and intercepting system calls which actual required, nevertheless desirable to perform in the context his or her own process. In one embodiment, computer operating includes multiple processes, such as private servers. Each process can be associated with more super-users. When an makes call that requires privileges, is intercepted wrapper.

参考文章(177)
Eric A. Brewer, David Wagner, Ian Goldberg, Randi Thomas, A secure environment for untrusted helper applications confining the Wily Hacker usenix security symposium. pp. 1- 1 ,(1996)
Naoki Shinjo, Teruo Utsumi, Haruhiko Ueno, Kazushige Kobayakawa, Shigeru Nagasawa, Kenichi Ishizaka, Masami Dewa, Masayuki Ikeda, Method and apparatus for processing and transferring data to processor and/or respective virtual processor corresponding to destination logical processor number ,(1993)
James Lyle Peterson, Weining Gu, Michael Thomas Collins, Method and apparatus for efficiently allocating objects in object oriented systems ,(1998)
James A. Roskind, Java security mechanism ,(1997)
Stephen Alan Chessin, Rodrick Ison Evans, Michael S. Walker, Method and system for compiling and linking source files ,(1998)