CapROS is a new operating system that merges some very old ideas about capabilities with some newer ideas about performance and resource management. The result is a small, secure, real-time operating system that provides orthogonal persistence.
An overview of the CapROS system is not yet available. In the meantime, the following publications, describing systems with a very similar architecture, will be of use in learning about the design and use of CapROS.
Describes the principles that gave rise to the EROS and CapROS system architectures.
A good description of the architecture of EROS. The CapROS architecture is mostly similar. (Performance data are not applicable to CapROS.)
Describes why capabilities offer a stronger security model than commonly-used access control mechanisms, and refutes some criticisms of the capability model.
Explains how capabilities support the Principle of Least Authority.
Somewhat dated, but describes some benefits of capabilities that still apply today.
Copyright 2009 by Strawberry Development Group. All rights reserved. For terms of redistribution, see the GNU General Public License |