首页> 外文会议> >A security model of dynamic labelling providing a tiered approach to verification
【24h】

A security model of dynamic labelling providing a tiered approach to verification

机译:动态标签的安全模型提供了分层的验证方法

获取原文
获取外文期刊封面目录资料

摘要

In the proposed mandatory access control model, arbitrary, label changing policies can be expressed. The relatively simple model can capture a wide variety of security policies, including high-water marks, downgrading, separation of duties, and Chinese Walls. The model forms the basis for a tiered approach to the formal development of secure systems, whereby security verification can be spread across what makes up the reference monitor and the security requirement specification. The advantage of this approach is that once a trusted computing base (TCB) is in place, reconfiguring it for different security requirements requires verification of just the new requirements. We illustrate the approach with a number of examples, including one policy that permits high-level subjects to make relabelling requests on low-level objects; the policy is multilevel secure.
机译:在建议的强制访问控制模型中,可以表示任意的标签更改策略。相对简单的模型可以捕获各种安全策略,包括高水位标记,降级,职责分离和中国墙。该模型构成了对安全系统进行正式开发的分层方法的基础,通过该方法,可以将安全验证分散到构成参考监视器和安全需求规范的各个部分。这种方法的优势在于,一旦建立了可信计算库(TCB),就需要针对不同的安全要求对其进行重新配置,只需验证新要求即可。我们通过许多示例来说明该方法,其中包括一项允许高级主题对低级对象提出重新标记请求的策略;该策略是多级安全的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号