Semantic Model Checks

In discussing file systems and security, we distinguish between those checks that the file system makes that are part of its semantic model, such as shared file access or special file attributes, and those checks that the file system makes that are part of the security information of the file. This section focuses on checks needed to comply with the semantic model. A later section discusses specific steps needed by a file system to perform security checks that are specific to the security information policies of the file system.

This section includes the following topics:

Create Processing

Delete on Close

Executable Images

Rename and Hard Link Processing

Set File Information Processing

Neither I/O Operations

File System Control Processing

Media Validation