Font Size: a A A

The Design And Implementation Of Universal Security Enhancement Technology

Posted on:2006-11-07Degree:MasterType:Thesis
Country:ChinaCandidate:Y F HeFull Text:PDF
GTID:2168360152487465Subject:Computer application technology
Abstract/Summary:PDF Full Text Request
Operating System manages the computer resource directly, which security is the base of the computer system's security. So research and implementation of security operating system is very important for us. One main method of implementing security OS is, directly modifying the original system's source code and add security mechanism into it. Many of them based on Linux kernel which is open source. This technology made the system has high efficiency, but there also are some shortcomings such as compatibility and portability.Considering of compatibility and portability and combining the advantages of virtual machine, this paper presents a type of universal security enhancement technology which was called security virtual machine and can be implemented on many operation systems. Without modifying the system's source code, security virtual machine encapsulates the kernel, builds a virtual machine which has security mechanism and presents a secure, portable service platform for the user. KNumen is the instance implemented on Windows, used this technology.On the base of discussing on Windows 2000's system architecture, this paper introduces the implementation of KNumen, emphasizing on the design idea and advisement about compatibility and portability. At the same time, this paper gives some technology details on Windows 2000 and some experience on the kernel development.The security enhancement technology put forward by this paper and experience on development presented by this paper, enrich the research on security OS especially on security enhancement, and provide bases for the further research on this aspect.
Keywords/Search Tags:Security Enhancement, Security Policy, Driver, Kernel Encapsulation
PDF Full Text Request
Related items