We describe a new design for authorization in operating systems. In this design two additional units are introduced, Certificate Authority which provide certificates for authorization for all participants and Access Controller which is responsible for making access decisions, and we describe the implementation of our design and its performance in the context of Singularity operating system.
Access Controller, Certificate Authority, Access Control Lists, Singularity