{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:21:20Z","timestamp":1750306880592,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":38,"publisher":"ACM","license":[{"start":{"date-parts":[[2012,12,3]],"date-time":"2012-12-03T00:00:00Z","timestamp":1354492800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2012,12,3]]},"DOI":"10.1145\/2420950.2421011","type":"proceedings-article","created":{"date-parts":[[2012,12,19]],"date-time":"2012-12-19T14:12:22Z","timestamp":1355926342000},"page":"419-428","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":6,"title":["Separation virtual machine monitors"],"prefix":"10.1145","author":[{"given":"John","family":"McDermott","sequence":"first","affiliation":[{"name":"Naval Research Laboratory, Washington, DC"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bruce","family":"Montrose","sequence":"additional","affiliation":[{"name":"Naval Research Laboratory, Washington, DC"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Margery","family":"Li","sequence":"additional","affiliation":[{"name":"Naval Research Laboratory, Washington, DC"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"James","family":"Kirby","sequence":"additional","affiliation":[{"name":"Naval Research Laboratory, Washington, DC"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Myong","family":"Kang","sequence":"additional","affiliation":[{"name":"Naval Research Laboratory, Washington, DC"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2012,12,3]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"comprising: INTEGRITY-178B Real Time Operating System (RTOS), version IN-ICR750-0101-GH01_REL running on Compact PCI card, version CPN 944-2021-021 with PowerPC, version 750cxe","author":"Separation Kernel B","year":"2008","unstructured":"Green Hills Software INTEGRITY-178 B Separation Kernel , comprising: INTEGRITY-178B Real Time Operating System (RTOS), version IN-ICR750-0101-GH01_REL running on Compact PCI card, version CPN 944-2021-021 with PowerPC, version 750cxe . Science International Applications Corporation (SAIC) , September 2008 . Green Hills Software INTEGRITY-178B Separation Kernel, comprising: INTEGRITY-178B Real Time Operating System (RTOS), version IN-ICR750-0101-GH01_REL running on Compact PCI card, version CPN 944-2021-021 with PowerPC, version 750cxe. Science International Applications Corporation (SAIC), September 2008."},{"key":"e_1_3_2_1_2_1","volume-title":"International Journal of Embedded Systems, 2((3\/4))","author":"Alves-Foss J.","year":"2006","unstructured":"J. Alves-Foss , W. S. Harrison , P. Oman , and C. Taylor . The MILS architecture for high assurance embedded systems . International Journal of Embedded Systems, 2((3\/4)) , 2006 . J. Alves-Foss, W. S. Harrison, P. Oman, and C. Taylor. The MILS architecture for high assurance embedded systems. International Journal of Embedded Systems, 2((3\/4)), 2006."},{"key":"e_1_3_2_1_3_1","volume-title":"Security Engineering: A Guide to Building Dependable Distributed Systems","author":"Anderson R.","year":"2008","unstructured":"R. Anderson . Security Engineering: A Guide to Building Dependable Distributed Systems , 2 nd ed. Wiley Publishing, Inc. , 2008 . R. Anderson. Security Engineering: A Guide to Building Dependable Distributed Systems, 2nd ed. Wiley Publishing, Inc., 2008.","edition":"2"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/961053.961069"},{"key":"e_1_3_2_1_5_1","volume-title":"Proc. 8th National Computer Security Conference","author":"Bobert W. E.","year":"1985","unstructured":"W. E. Bobert and R. Y. Kain . A practical alternative to heirarchical integrity policies . In Proc. 8th National Computer Security Conference , Gaithersburg, Maryland, US , 1985 . W. E. Bobert and R. Y. Kain. A practical alternative to heirarchical integrity policies. In Proc. 8th National Computer Security Conference, Gaithersburg, Maryland, US, 1985."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/DASC.2008.4702758"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.1989.36295"},{"key":"e_1_3_2_1_8_1","volume-title":"The Definitive Guide to the Xen Hypervisor","author":"Chisnall D.","year":"2008","unstructured":"D. Chisnall . The Definitive Guide to the Xen Hypervisor . Prentice-Hall , 2008 . D. Chisnall. The Definitive Guide to the Xen Hypervisor. Prentice-Hall, 2008."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-28641-4_4"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.29"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.5555\/3220907.3221161"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2004.08.001"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/1180405.1180448"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/501963.501966"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.5555\/784592.784794"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/1815961.1816010"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/1629575.1629596"},{"key":"e_1_3_2_1_18_1","volume-title":"Computer Science Dept.","author":"Lattner C.","year":"2002","unstructured":"C. Lattner . LLVM : An infrastructure for multi-stage optimization. Master's thesis , Computer Science Dept. , University of Illinois at Urbana-Champaign , 2002 . C. Lattner. LLVM: An infrastructure for multi-stage optimization. Master's thesis, Computer Science Dept., University of Illinois at Urbana-Champaign, 2002."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/1456396.1456401"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.istr.2008.01.001"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1109\/MILCOM.2012.6415673"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2007.48"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.5555\/882491.884230"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.5555\/646645.699177"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/1542207.1542243"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/800216.806586"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSAC.2005.13"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/1508293.1508311"},{"key":"e_1_3_2_1_29_1","volume-title":"Proceedings of the 8th conference on USENIX Security Symposium -","volume":"8","author":"Spencer R.","year":"1999","unstructured":"R. Spencer , S. Smalley , P. Loscocco , M. Hibler , D. Andersen , and J. Lepreau . The Flask security architecture: system support for diverse security policies . In Proceedings of the 8th conference on USENIX Security Symposium - Volume 8 , Washington, DC, US , 1999 . R. Spencer, S. Smalley, P. Loscocco, M. Hibler, D. Andersen, and J. Lepreau. The Flask security architecture: system support for diverse security policies. In Proceedings of the 8th conference on USENIX Security Symposium - Volume 8, Washington, DC, US, 1999."},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/1755913.1755935"},{"key":"e_1_3_2_1_31_1","volume-title":"NSA","author":"Systems and N. A. Center","year":"2010","unstructured":"Systems and N. A. Center . Separation Kernels on Commodity Workstations. Information Assurance Directorate , NSA , March 2010 . Systems and N. A. Center. Separation Kernels on Commodity Workstations. Information Assurance Directorate, NSA, March 2010."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046707.2046754"},{"key":"e_1_3_2_1_33_1","volume-title":"No Starch Press","author":"Takemura C.","year":"2010","unstructured":"C. Takemura and L. Crawford . The Book of Xen . No Starch Press , 2010 . C. Takemura and L. Crawford. The Book of Xen. No Starch Press, 2010."},{"key":"e_1_3_2_1_34_1","volume-title":"Proc. 6th USENIX UNIX Security Symposium","author":"Walker K.","year":"1996","unstructured":"K. Walker , D. Sterne , M. L. Badger , M. Petkac , D. Shermann , and K. Oostendorp . Confining root programs with domain and type enforcement (DTE) . In Proc. 6th USENIX UNIX Security Symposium , San Jose, California, US , July 1996 . K. Walker, D. Sterne, M. L. Badger, M. Petkac, D. Shermann, and K. Oostendorp. Confining root programs with domain and type enforcement (DTE). In Proc. 6th USENIX UNIX Security Symposium, San Jose, California, US, July 1996."},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.30"},{"key":"e_1_3_2_1_36_1","volume-title":"NIST Special Publication 500--235","author":"Watson A.","year":"1996","unstructured":"A. Watson and T. McCabe. Structured Testing: A Testing Methodology Using the Cyclomatic Complexity Metric , NIST Special Publication 500--235 . National Institute of Standards and Technology , 1996 . A. Watson and T. McCabe. Structured Testing: A Testing Methodology Using the Cyclomatic Complexity Metric, NIST Special Publication 500--235. National Institute of Standards and Technology, 1996."},{"key":"e_1_3_2_1_37_1","volume-title":"Operational semantics of Circus. Formal aspects of computing","author":"Woodcock J.","year":"2008","unstructured":"J. Woodcock , A. Cavalcanti , M.-C. Godel , and L. Freitas . Operational semantics of Circus. Formal aspects of computing , 2008 . in press. J. Woodcock, A. Cavalcanti, M.-C. Godel, and L. Freitas. Operational semantics of Circus. Formal aspects of computing, 2008. in press."},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1145\/2043556.2043576"}],"event":{"name":"ACSAC '12: Annual Computer Security Applications Conference","sponsor":["ACSA Applied Computing Security Assoc"],"location":"Orlando Florida USA","acronym":"ACSAC '12"},"container-title":["Proceedings of the 28th Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2420950.2421011","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2420950.2421011","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T08:18:33Z","timestamp":1750234713000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2420950.2421011"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012,12,3]]},"references-count":38,"alternative-id":["10.1145\/2420950.2421011","10.1145\/2420950"],"URL":"https:\/\/doi.org\/10.1145\/2420950.2421011","relation":{},"subject":[],"published":{"date-parts":[[2012,12,3]]},"assertion":[{"value":"2012-12-03","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}