JavaScript is disabled for your browser. Some features of this site may not work without it.
A Language for Securely Referencing Persistent Information in a Federated System

Author
Liu, Jed; Myers, Andrew C.
Abstract
Referential integrity, which guarantees that named resources can be accessed when referenced, is an important property for reliability and security. In distributed systems, however, the attempt to provide referential integrity can itself lead to security vulnerabilities that are not currently well understood. This paper identifies three kinds of _referential security_ vulnerabilities related to the referential integrity of distributed, persistent information. Security conditions corresponding to the absence of these vulnerabilities are formalized. A language model is used to capture the key aspects of programming distributed systems with named, persistent resources in the presence of an adversary. The referential security of distributed systems is proved to be enforced by a new type system.
Date Issued
2014-01-17Subject
referential security; distributed systems; type system
Type
technical report