The Nizza Secure-System Architecture
Hermann Härtig, Michael Hohmuth, Norman Feske, Christian Helmuth, Adam Lackorzyński, Frank Mehnert, Michael Peter · 2006
The trusted computing bases (TCBs) of applications running on today's commodity operating systems have become extremely large. This paper presents an architecture that allows to build applications with a much smaller TCB. It is based on a kernelized architecture and on the reuse of legacy software using trusted wrappers. We discuss the design principles, the architecture and some components, and a number of usage examples.