l4-hurd
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Design principles and ethics (was Re: Execute without read (was [...


From: Marcus Brinkmann
Subject: Re: Design principles and ethics (was Re: Execute without read (was [...]))
Date: Sun, 30 Apr 2006 15:11:02 +0200
User-agent: Wanderlust/2.14.0 (Africa) SEMI/1.14.6 (Maruoka) FLIM/1.14.7 (Sanjō) APEL/10.6 Emacs/21.4 (i486-pc-linux-gnu) MULE/5.0 (SAKAKI)

At Sat, 29 Apr 2006 20:09:09 -0400,
"Jonathan S. Shapiro" <address@hidden> wrote:
> > Going back to confinement, let me state it very clearly, once and for
> > all, because you keep getting it wrong:
> > 
> >   * * *   Every process in the Hurd will be confined.   * * *
> > 
> > It will be confined because it was created by its parent, so it meets
> > the definition of confinement in the most trivial sense.
> 
> This is complete nonsense. The confinement property states:
> 
>   A confined application can only transmit data through authorized
>   channels.
> 
> However, any reading of the original paper makes clear that the
> definition of confinement occurs in a context:
> 
>   - There is a process that is attempting to transmit.
>   - The process is free from external coercion in regard to
>     transmission. That is: transmission requires both permission
>     **and intent**.

Define "external".

Thanks,
Marcus





reply via email to

[Prev in Thread] Current Thread [Next in Thread]