...
首页> 外文期刊>Journal of computer security >Information flow security in dynamic contexts
【24h】

Information flow security in dynamic contexts

机译:动态上下文中的信息流安全

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

We study information flow security in the setting of mobile agents. We propose a sufficient condition to security named Persistent_BNDC. A process is Persistent_BNDC when every of its reachable states satisfies a basic Non-interference property called BNDC. By imposing that security persists during process execution, one is guaranteed that every potential migration is performed in a stable, secure state. We define a suitable bisimulation-based equivalence relation among processes, that allows us to express the new property as a single equivalence check, thus avoiding the universal quantifications over all the reachable states (required by Persistent_BNDC) and over all the possible hostile environments (implicit in the basic Non-interference property BNDC). We prove that Persistent_BNDC is a sufficient condition to the security of mobile agents by (ⅰ) giving a sound and complete characterization of Persistent_BNDC in terms of dynamic contexts, i.e., execution contexts that can non-deterministically change at run-time, abstractly modelling arbitrary migrations; (ⅱ) showing that Persistent_BNDC implies information flow security when agent mobility is explicitly expressed in the calculus.
机译:我们研究移动代理设置中的信息流安全性。我们为安全性提出了一个充分的条件,名为Persistent_BNDC。当进程的每个可达状态都满足称为BNDC的基本非干扰属性时,该进程为Persistent_BNDC。通过强加在过程执行期间保持安全性,可以确保在稳定,安全的状态下执行每个潜在的迁移。我们在过程之间定义了一个合适的基于双仿真的等价关系,该关系使我们可以将新属性表示为单个等价检查,从而避免了对所有可达状态(Persistent_BNDC要求)以及所有可能的敌对环境(隐式)进行通用量化在基本的非干扰属性BNDC中)。我们通过以下方式证明Persistent_BNDC是移动代理程序安全性的充分条件:(ⅰ)在动态上下文(即可以在运行时不确定性地更改执行上下文,对任意对象进行抽象建模)方面给出Persistent_BNDC的健全且完整的特征迁移; (ⅱ)表明,当在演算中明确表示代理移动性时,Persistent_BNDC意味着信息流安全。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号