Using Sparse Capabilities in a Distributed Operating System

Andrew S. Tanenbaum, Sape J. Mullender, Robbert van Renesse · 1986

A distributed operating system, Amoeba, that includes capabilities for naming and protecting objects is reported. In contrast to traditional centralized operating systems, in which capabilities are managed by the operating system kernel, in Amoeba all the capabilities are managed directly by user code. To prevent tampering, the capabilities are protected cryptographically. A variety of the issues involved is outlined, and four different ways of dealing with access rights are presented.

Read the paper · More papers on PaperTik