OpenBSD formal driver verification with SeL4

Adriana Nicolae, Paul Irofti, Ioana Leustean
{"title":"OpenBSD formal driver verification with SeL4","authors":"Adriana Nicolae, Paul Irofti, Ioana Leustean","doi":"arxiv-2311.03585","DOIUrl":null,"url":null,"abstract":"The seL4 microkernel is currently the only kernel that has been fully\nformally verified. In general, the increased interest in ensuring the security\nof a kernel's code results from its important role in the entire operating\nsystem. One of the basic features of an operating system is that it abstracts\nthe handling of devices. This abstraction is represented by device drivers -\nthe software that manages the hardware. A proper verification of the software\ncomponent could ensure that the device would work properly unless there is a\nhardware failure.In this paper, we choose to model the behavior of a device\ndriver and build the proof that the code implementation matches the expected\nbehavior. The proof was written in Isabelle/HOL, the code translation from C to\nIsabelle was done automatically by the use of the C-to-Isabelle Parser and\nAutoCorres tools. We choose Isabelle theorem prover because its efficiency was\nalready shown through the verification of seL4 microkernel.","PeriodicalId":501333,"journal":{"name":"arXiv - CS - Operating Systems","volume":"64 1","pages":""},"PeriodicalIF":0.0000,"publicationDate":"2023-11-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"arXiv - CS - Operating Systems","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/arxiv-2311.03585","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

The seL4 microkernel is currently the only kernel that has been fully formally verified. In general, the increased interest in ensuring the security of a kernel's code results from its important role in the entire operating system. One of the basic features of an operating system is that it abstracts the handling of devices. This abstraction is represented by device drivers - the software that manages the hardware. A proper verification of the software component could ensure that the device would work properly unless there is a hardware failure.In this paper, we choose to model the behavior of a device driver and build the proof that the code implementation matches the expected behavior. The proof was written in Isabelle/HOL, the code translation from C to Isabelle was done automatically by the use of the C-to-Isabelle Parser and AutoCorres tools. We choose Isabelle theorem prover because its efficiency was already shown through the verification of seL4 microkernel.
使用SeL4的OpenBSD正式驱动程序验证
seL4微内核是目前唯一经过正式验证的内核。通常,由于内核代码在整个操作系统中的重要作用,对确保内核代码安全性的兴趣越来越大。操作系统的一个基本特征是对设备的抽象处理。这种抽象由设备驱动程序(管理硬件的软件)表示。对软件组件进行适当的验证可以确保设备正常工作,除非出现硬件故障。在本文中,我们选择对设备驱动程序的行为进行建模,并构建代码实现与预期行为匹配的证明。证明是用Isabelle/HOL编写的,从C到Isabelle的代码翻译是通过使用C到Isabelle解析器和autocorres工具自动完成的。我们之所以选择Isabelle定理证明器,是因为它的有效性已经通过seL4微内核的验证得到了体现。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信