Show simple item record

dc.contributor.authorGollamudi, Anitha
dc.contributor.authorChong, Stephen N
dc.date.accessioned2017-01-30T19:45:05Z
dc.date.issued2016-07-25
dc.identifierQuick submit: 2017-01-26T14:54:11-0500
dc.identifier.citationGollamudi, Anitha and Stephen Chong. 2016. Automatic Enforcement of Expressive Security Policies using Enclaves. Harvard Computer Science Group Technical Report TR-02-16.en_US
dc.identifier.urihttp://nrs.harvard.edu/urn-3:HUL.InstRepos:30168300
dc.description.abstractHardware-based enclave protection mechanisms, such as Intel’s SGX, ARM’s TrustZone, and Apple’s Secure Enclave, can protect code and data from powerful low-level attackers. In this work, we use enclaves to enforce strong applicationspecific information security policies. We present IMPE, a novel calculus that captures the essence of SGX-like enclave mechanisms, and show that a security-type system for IMPE can enforce expressive confidentiality policies (including erasure policies and delimited release policies) against powerful low-level attackers, including attackers that can arbitrarily corrupt non-enclave code, and, under some circumstances, corrupt enclave code. We present a translation from an expressive securitytyped calculus (that is not aware of enclaves) to IMPE. The translation automatically places code and data into enclaves to enforce the security policies of the source program.en_US
dc.description.sponsorshipEngineering and Applied Sciencesen_US
dc.language.isoen_USen_US
dc.relation.hasversionhttp://people.seas.harvard.edu/~chong/pubs/oopsla16-auto-enclave.pdfen_US
dash.licenseLAA
dc.subjectenclave programsen_US
dc.subjectinformation erasureen_US
dc.subjectdeclassificationen_US
dc.subjectsecurity-type systemen_US
dc.subjectinformation-flow controlen_US
dc.subjectlanguage-based securityen_US
dc.titleAutomatic Enforcement of Expressive Security Policies using Enclavesen_US
dc.typeResearch Paper or Reporten_US
dc.date.updated2017-01-26T19:54:07Z
dc.description.versionVersion of Recorden_US
dash.depositing.authorChong, Stephen N
dc.date.available2016
dc.date.available2017-01-30T19:45:05Z
dash.contributor.affiliatedGollamudi, Anitha
dash.contributor.affiliatedChong, Stephen


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record