Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Capability-Based Security for Redox: Namespace and CWD as Capabilities (redox-os.org)
60 points by ejplatzer 19 hours ago | hide | past | favorite | 7 comments
 help



Good work. I'm happy to see this for Redox. There are numerous implementations of capabilities now, and they confirm that the concept really does simplify access control and sandboxing.

Could I get some examples? I'm interested in learning more.


Implementations include seL4, Barrelfish, Google Fuchsia OS, Capsicum, and a slew of research systems too long to list. It's also worth checking out tangential things like the E programming language and Google's old Caja project.


Cloudflare's developer platform uses them. That's what their "bindings" are.

there's also capsudo by kaniini

https://github.com/kaniini/capsudo




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: