YoVDO

CloudABI - Capability Based Security on Linux/Unix

Offered By: EuroPython Conference via YouTube

Tags

EuroPython Courses Python Courses Linux Courses POSIX Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore capability-based security on Unix systems with CloudABI in this EuroPython conference talk. Dive into the design principles of CloudABI, a POSIX-based computing environment that enhances security by restricting processes to only affect provided file descriptors. Learn how CloudABI removes APIs capable of acquiring global resources, requiring processes to be granted specific capabilities. Discover the benefits and trade-offs of this approach, including the ability to safely execute unknown binaries without containers or virtual machines. Gain insights into writing Python software for CloudABI, potential pitfalls to avoid, and the current and future status of this technology. Compare CloudABI to traditional Unix security models and understand its implementation across various operating systems, including BSD, Linux, and macOS.

Syllabus

Intro
Background
Problem
CloudABI
API Removal
Capability Tokens
Example Configuration
Future Possibilities
Questions


Taught by

EuroPython Conference

Related Courses

Многопоточность
Moscow Institute of Physics and Technology via Coursera
Real-Time Systems
NPTEL via YouTube
The World of 100G Networking
Linux Foundation via YouTube
POSIX Roadmap for Zephyr LTSv3 - Implementation and Future Plans
Linux Foundation via YouTube
Unlocking the Power of POSIX Support in Zephyr RTOS
Linux Foundation via YouTube