首页> 外文会议>International conference on space operations >A Formal Downgrading Policy Framework for the Secure Sharing of Mission Sensitive Data and Services
【24h】

A Formal Downgrading Policy Framework for the Secure Sharing of Mission Sensitive Data and Services

机译:用于安全共享任务敏感数据和服务的正式降级策略框架

获取原文

摘要

Formal specification and visual modeling languages are used to precisely describe a system's state or its evolving behavior (e.g., data computations specified as state-changes). In terms of security, the formal specification and assessment of access control and policy enforcement models allows reasoning on their correctness. These formalization requirements become apparent in the context of an ESA realistic application scenario that involves the possible collision of two space objects in Earth orbit that are characterized by different sensitivity levels. To aid the decision toward safe collision avoidance actions, the secure and efficient sharing of sensitive information data between the operators of the two objects must be ensured. We present a novel approach and formal framework based on the algebraic theory of graph transformation to achieve this goal. We use the visual modeling language Henshin to formally specify the enforcement of policy rule-sets and computational semantics on the scenario's sensitive data before it is released from higher to lower security levels. We shall refer to this operation as "information downgrading". In parallel, special privacy and sharing constraints deriving from the scenario's context dictate the need of balancing data security with data usability during the downgrading process. Finally, the functional correctness of our formal framework is validated by detecting possible conflicts and inconsistencies between data computations application.
机译:形式规范和可视化建模语言用于精确描述系统的状态或其演化行为(例如,指定为状态更改的数据计算)。在安全性方面,对访问控制和策略执行模型的正式规范和评估允许对它们的正确性进行推理。这些形式化要求在ESA实际应用场景的背景下变得显而易见,该场景涉及地球轨道上两个空间物体可能发生碰撞,这些空间物体具有不同的灵敏度级别。为了帮助做出安全避碰措施的决策,必须确保两个对象的操作员之间安全有效地共享敏感信息数据。我们提出了一种基于图变换的代数理论的新颖方法和形式框架,以实现这一目标。我们使用视觉建模语言Henshin在从高到低安全级别发布方案之前,在方案的敏感数据上正式指定策略规则集和计算语义的执行。我们将此操作称为“信息降级”。同时,源自场景上下文的特殊隐私和共享约束指示在降级过程中需要平衡数据安全性和数据可用性。最后,通过检测数据计算应用程序之间可能存在的冲突和不一致,来验证我们正式框架的功能正确性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号