Rainbow: Difference between revisions
Jump to navigation
Jump to search
(..) |
m (..) |
||
Line 1: | Line 1: | ||
Rainbow is the implementation of the [[Bitfrost]] security specification. |
Rainbow is the implementation of the [[Bitfrost]] security specification. Rainbow: |
||
* Negotiates launching activities and creating a secure, minimal environment for their operation inside a 'Container', a way of isolating one activity from another. This includes limiting the scope of Filesystem, Network Access and CPU time that each activity has access to. |
* Negotiates launching activities and creating a secure, minimal environment for their operation inside a 'Container', a way of isolating one activity from another. This includes limiting the scope of Filesystem, Network Access and CPU time that each activity has access to. |
Revision as of 23:05, 28 August 2007
Rainbow is the implementation of the Bitfrost security specification. Rainbow:
- Negotiates launching activities and creating a secure, minimal environment for their operation inside a 'Container', a way of isolating one activity from another. This includes limiting the scope of Filesystem, Network Access and CPU time that each activity has access to.
- Creates a means for Updates to happen in a reliable and secure way.
- Provides interfaces to VServer and other libraries that make the above possible
example documentation
1 <gitembed>security||rainbow/README.txt</gitembed> 2