Mobile Calculi based on Domains

History-based access control for distributed processes

F. Martins and V. Vasconcelos


This paper presents a type system to control the migration of code between network nodes in a concurrent distributed framework, using the Dpi language. We express resource access policies as types and enforce policies via a type system. Types describe paths travelled by migrating code, enabling the control of history sensitive access to resources. Sites are logically organised in subnetworks that share the same security policies, statically specified by a network administrator. The type system guarantees that well-typed networks are exempt from security policies violations at runtime.

