Carnegie Mellon University
file.pdf (545.8 kB)

A Proof-Carrying File System

Download (545.8 kB)
journal contribution
posted on 1978-01-01, 00:00 authored by Deepak Garg, Frank Pfenning
We present the design and implementation of PCFS, a file system that adapts proof-carrying authorization to provide direct, rigorous, and efficient enforcement of dynamic access policies. The keystones of PCFS are a new authorization logic BL that supports policies whose consequences may change with both time and system state, and a rigorous enforcement mechanism that combines proof verification with conditional capabilities. We prove that our enforcement using capabilities is correct, and evaluate our design through performance measurements and a case study.


Publisher Statement

All Rights Reserved



Usage metrics