[Top][All Lists]
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Design principles and ethics (was Re: Execute without read (was [...
From: |
Marcus Brinkmann |
Subject: |
Re: Design principles and ethics (was Re: Execute without read (was [...])) |
Date: |
Sun, 30 Apr 2006 15:11:02 +0200 |
User-agent: |
Wanderlust/2.14.0 (Africa) SEMI/1.14.6 (Maruoka) FLIM/1.14.7 (Sanjō) APEL/10.6 Emacs/21.4 (i486-pc-linux-gnu) MULE/5.0 (SAKAKI) |
At Sat, 29 Apr 2006 20:09:09 -0400,
"Jonathan S. Shapiro" <address@hidden> wrote:
> > Going back to confinement, let me state it very clearly, once and for
> > all, because you keep getting it wrong:
> >
> > * * * Every process in the Hurd will be confined. * * *
> >
> > It will be confined because it was created by its parent, so it meets
> > the definition of confinement in the most trivial sense.
>
> This is complete nonsense. The confinement property states:
>
> A confined application can only transmit data through authorized
> channels.
>
> However, any reading of the original paper makes clear that the
> definition of confinement occurs in a context:
>
> - There is a process that is attempting to transmit.
> - The process is free from external coercion in regard to
> transmission. That is: transmission requires both permission
> **and intent**.
Define "external".
Thanks,
Marcus
- Re: Design principles and ethics, (continued)
- Re: Design principles and ethics, Bas Wijnen, 2006/04/30
- Re: Design principles and ethics, Pierre THIERRY, 2006/04/30
- Re: Design principles and ethics, Tom Bachmann, 2006/04/30
- Re: Design principles and ethics, Jonathan S. Shapiro, 2006/04/30
- Re: Design principles and ethics, Marcus Brinkmann, 2006/04/30
- Physical access without ultimate power? (was Re: Design principles and ethics (was [...]))), Pierre THIERRY, 2006/04/30
- Re: Physical access without ultimate power? (was Re: Design principles and ethics (was [...]))), Bas Wijnen, 2006/04/30
- Re: Design principles and ethics (was Re: Execute without read (was [...])), Marcus Brinkmann, 2006/04/30
- Re: Design principles and ethics (was Re: Execute without read (was [...])),
Marcus Brinkmann <=
- Re: the deadly hypercube of death, or: handling permissions, Jonathan S. Shapiro, 2006/04/27
- Re: the deadly hypercube of death, or: handling permissions, Marcus Brinkmann, 2006/04/27
- Re: the deadly hypercube of death, or: handling permissions, Ludovic Courtès, 2006/04/27
- Re: the deadly hypercube of death, or: handling permissions, Marcus Brinkmann, 2006/04/27
- Re: the deadly hypercube of death, or: handling permissions, Ludovic Courtès, 2006/04/27
- Re: the deadly hypercube of death, or: handling permissions, Tom Bachmann, 2006/04/27
- Re: the deadly hypercube of death, or: handling permissions, Ludovic Courtès, 2006/04/27
- Re: the deadly hypercube of death, or: handling permissions, Marcus Brinkmann, 2006/04/27
- Directories traversal (was Re: the deadly hypercube of death, or: handling permissions), Pierre THIERRY, 2006/04/27
- Re: Directories traversal (was Re: the deadly hypercube of death, or: handling permissions), Marcus Brinkmann, 2006/04/27