ACM Home Page
Please provide us with feedback. Feedback
An efficient security verification method for programs with stack inspection
Full text PdfPdf (373 KB)
Source Conference on Computer and Communications Security archive
Proceedings of the 8th ACM conference on Computer and Communications Security table of contents
Philadelphia, PA, USA
Session: Mobile Code and Distributed Systems table of contents
Pages: 68 - 77  
Year of Publication: 2001
ISBN:1-58113-385-5
Authors
Naoya Nitta  Nara Institute of Science and Technology, Takayama, Ikoma, Nara, Japan
Yoshiaki Takata  Nara Institute of Science and Technology, Takayama, Ikoma, Nara, Japan
Hiroyuki Seki  Nara Institute of Science and Technology, Takayama, Ikoma, Nara, Japan
Sponsor
SIGSAC: ACM Special Interest Group on Security, Audit, and Control
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 3,   Downloads (12 Months): 31,   Citation Count: 2
Additional Information:

abstract   references   cited by   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/501983.501994
What is a DOI?

ABSTRACT

Stack inspection is a key technology for runtime access control of programs in a network environment. In this paper, a verification problem to decide whether a given program with stack inspection satisfies a given security property is discussed. First, the computational complexity of the problem is investigated. Since the result implies the problem is computationally intractable in general, we introduce a practically important subclass of programs which exactly model programs containing check Permission of Java development kit 1.2. We show that the problem for this subclass is solvable in linear time in the size of a program.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

1
 
2
M. Abadi, C. Fournet, and G. Gonthier. Secure communications processing for distributed languages. In IEEE Symp. on Security and Privacy, pages 74-88, 1999.
3
 
4
5
6
 
7
E. A. Emerson. Temporal and Modal Logic, in Handbook of Theoretical Computer Science, 1023-1024. Elsevier, 1990.
 
8
M. R. Garey and D. S. Johnson. Computers and Intractability. W. H. Freeman and Company, 1979.
 
9
10
 
11
 
12
T. Jensen, D. Le Mffetayer, and T. Thorn. Verification of control ow based security properties. In IEEE Symp. on Security and Privacy, pages 89-103, 1999.
13
14
 
15
 
16
 
17
D. S. Wallach and E. W. Felten. Understanding Java stack inspection. In IEEE Symp. on Security and Privacy, pages 52-63, 1998.


Collaborative Colleagues:
Naoya Nitta: colleagues
Yoshiaki Takata: colleagues
Hiroyuki Seki: colleagues