Content deleted Content added
→External links: rm heading: there aren't any at the moment |
→TCB size: I feel like "aficionados" has a negative connotation that should have no place here. |
||
Line 88:
===TCB size===
Due to the aforementioned need to apply costly techniques such as formal verification or manual review, the size of the TCB has immediate consequences on the economics of the TCB assurance process, and the trustworthiness of the resulting product (in terms of the [[expected value|mathematical expectation]] of the number of bugs not found during the verification or review). In order to reduce costs and security risks, the TCB should therefore be kept as small as possible. This is a key argument in the debate opposing [[microkernel]]
==Examples==
|