UN TEMA, EN CONTEXTO

trust boundary design

Judgments in this source concerning trust boundary design. Explora 1 punto de vista con evidencias de 1 fuente.

1 personas · 1 fuentes · 1 opiniones expresadas

Contenido actualizado:

Explorar conexiones ↗

Mapa de perspectivas

Explore por persona. Seleccione dos o tres para compararlas.

1 personas · 1 fuentes · 1 opiniones expresadas

Olivia Johnston

Existing isolation uses an outdated unit of trust

Johnston says technologies such as gVisor and Firecracker isolate the platform from users and users from one another. She calls that unit of trust outdated and asks how to protect users from their “own” code.

Evidencia a favor

Sidecars: A low-latency trust boundary for Sandboxes | Modal Blog

Extracto original

technologies like gVisor and Firecracker “solved” “isolation” nearly eight years ago. Unfortunately for us, they solved it for an now-outdated unit of trust. How do you protect users from their “own” code?
Contexto

At Modal, our customers rely on Sandboxes to execute untrusted code written by their downstream users or, almost exclusively now, by agents. Running untrusted code isn’t a new problem: every cloud provider has to do this from day 1 to isolate their platform from their user and their users from each other. Fortunately,

Compartir informaciónVerificar esta afirmación

Estas son perspectivas individuales, no una medida de consenso. El material fuente permanece en su idioma original.