Viaduct: An Extensible, Optimizing Compiler for Secure Distributed Programs

Abstract

Modern distributed systems involve interactions between principals with limited trust, so cryptographic mechanisms are needed to protect confidentiality and integrity. At the same time, most developers lack the training to securely employ cryptography. We present Viaduct, a compiler that transforms high-level programs into secure, efficient distributed realizations. Viaduct's source language allows developers to declaratively specify security policies by annotating their programs with information flow labels. The compiler uses these labels to synthesize distributed programs that use cryptography efficiently while still defending the source-level security policy. The Viaduct approach is general, and can be easily extended with new security mechanisms. Our implementation of the Viaduct compiler comes with an extensible runtime system that includes plug-in support for multiparty computation, commitments, and zero-knowledge proofs. We have evaluated the system on a set of benchmarks, and the results indicate that our approach is feasible and can use cryptography in efficient, nontrivial ways.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Jun 18, 2021
Accession Number
AD1203854

Entities

People

  • Andrew C. Myers
  • Cosku Acay
  • Elaine Shi
  • Joshua Gancher
  • Rolph Recto

Organizations

  • Cornell University

Tags

Communities of Interest

  • Energy and Power Technologies

DTIC Thesaurus Topics

  • Algorithms
  • Compilers
  • Computations
  • Computer Programming
  • Computer Programs
  • Computer Science
  • Computers
  • Computing System Architectures
  • Cost Models
  • Cryptography
  • Cybersecurity
  • Data Storage Systems
  • Estimators
  • Hypervelocity Flow
  • Local Area Networks
  • Microarchitecture
  • Networks
  • Programming Languages
  • Security Protocols

Fields of Study

  • Computer science

Readers

  • Artificial Intelligence
  • Cybersecurity.
  • Neurological Diseases/Conditions/Disorders

Technology Areas

  • Cyber