inria-00580923, version 1
Lightweight verification of control flow policies on Java bytecode
Arnaud Fontaine
1Samuel Hym
2Isabelle Simplot-Ryl
2
N° RR-7584 (2011)
Résumé : This paper presents the enforcement of control flow policies for Java bytecode devoted to open and constrained devices. On-device enforcement of security policies mostly relies on run-time monitoring or inline checking code, which is not appropriate for strongly constrained devices such as mobile phones and smart-cards. We present a proof-carrying code approach with on-device lightweight verification of control flow policies statically at loading- time. Our approach is suitable for evolving, open and constrained Java-based systems as it is compositional, to avoid re-verification of already verified bytecode upon loading of new bytecode, and it is regressive, to cleanly support bytecode unloading.
- 1 : POPS (INRIA Lille - Nord Europe)
- INRIA – CNRS : UMR8022 – Université Lille 1 - Sciences et Technologies – IRCICA
- 2 : Laboratoire d'Informatique Fondamentale de Lille (LIFL)
- CNRS : UMR8022 – INRIA – IRCICA – Université Lille 1 - Sciences et Technologies
- Domaine : Informatique/Cryptographie et sécurité
Informatique/Informatique mobile
Informatique/Informatique ubiquitaire
Informatique/Systèmes embarqués - Référence interne : RR-7584
- inria-00580923, version 1
- http://hal.inria.fr/inria-00580923
- oai:hal.inria.fr:inria-00580923
- Contributeur : Arnaud Fontaine
- Soumis le : Jeudi 7 Avril 2011, 12:01:40
- Dernière modification le : Jeudi 7 Avril 2011, 12:01:40






Documents associés
Exporter