A dependable kernel design for resource isolation and protection

Matthieu Lemerre, Vincent David, Guy Vidal-Naquet · 2010

Anaxagoros is microkernel designed to support dependable, concurrent execution of tasks with different safety levels, some of them having real-time constraints. Following mi-crokernel philosophy of secure resource sharing, it allows resources to be separated into pools accessed only through a dedicated system service. This ensures spatial and behav-ioral protection of system resources. Anaxagoros also provides means to guarantee temporal isolation and availability when accessing the shared services. This is achieved by providing adequate kernel mechanisms, like communication with resource lending; but also by care-ful kernel design and implementation, like the decision to make all kernel operations of (small) constant time complex-ity, even on multicore architectures, thus making the kernel behavior predictable. This led to an efficient kernel, that does not perform any dynamic memory allocation, and is highly parallelizable. This paper presents an overview of the design and imple-mentation of the kernel, along their higher-level rationales. 1.

Read the paper · More papers on PaperTik