The Dual-Execution-Environment Approach: Analysis and Comparative Evaluation
نویسندگان
چکیده
The dual-execution-environment approach (dual-EE) is a trusted model that was defined to allow mobile smart devices to guarantee tamper-resistant execution for highly sensitive applications. Although various solutions implementing dual-EE have been proposed in the literature, this model has not been formalized yet. In this paper, we revisit the dual-EE approach and propose a theoretical framework to systematize the design of dual-EE solutions regarding well-established primitives defined in the Multiple Independent Levels of Security (MILS) architecture. We provide a general classification of the different dual-EE proposals based on their isolation properties. We introduce a comparative framework allowing dual-EE solutions to be evaluated across a common set of criteria. The relevance of our framework is examined by applying it on three technologies, each one represents one category in our classification. Results are consistent and explain some hidden and unexpected properties of each technology. For instance, we find that bare-metal hypervisors are ill-adapted to provide high assurance security even though they might improve the overall security level of the system.
منابع مشابه
Comparative Study of the Architecture of the Tajrish Historical Bazaar and Arg Shopping Center: a Synomorphy Theory Approach
Ecological Psychology and Micro-Sociology studies concerning behavioral-milieu systems have created an important basis for evaluation and prediction of the performance of built environments. In this context, the Behavior Setting Theory introduced by Roger Barker in 1968 defines the complicated behavioral-milieu framework or synomorphy as the determining factor of the environmental behaviors of ...
متن کاملAn integrated simulation-DEA approach to multi-criteria ranking of scenarios for execution of operations in a construction project
The purpose of this study is to examine different scenarios for implementing operations in the pre-construction phase of a project, based on several competing criteria with different importance levels in order to achieve a more efficient execution plan. This paper presents a new framework that integrates discrete event simulation (DES) and data envelopment analysis (DEA) to rank different scena...
متن کاملDual Punitiveness- Tolerant Approaches to Response to Drugs and Psychotropic Crimes: Discourse Analysis of “Metri Shisho Nim” movie
Extended Abstract Introduction: Although there has been a deep consensus among criminal science scholars about the necessity of applying punishment per se in response to the most severe criminal behaviors, human beings still tend to instinctively respond to criminal behavior with repressive measures. While there is no denial of the necessity of applying penalties in the fight against criminal ...
متن کاملSoccer Goalkeeper Task Modeling and Analysis by Petri Nets
In a robotic soccer team, goalkeeper is an important challenging role, which has different characteristics from the other teammates. This paper proposes a new learning-based behavior model for a soccer goalkeeper robot by using Petri nets. The model focuses on modeling and analyzing, both qualitatively and quantitatively, for the goalkeeper role so that we have a model-based knowledge of the ta...
متن کاملDual Punitiveness- Tolerant Approaches to Response to Drugs and Psychotropic Crimes: Discourse Analysis of “Metri Shisho Nim” movie
Extended Abstract Introduction: Although there has been a deep consensus among criminal science scholars about the necessity of applying punishment per se in response to the most severe criminal behaviors, human beings still tend to instinctively respond to criminal behavior with repressive measures. While there is no denial of the necessity of applying penalties in the fight against criminal ...
متن کامل