【24h】

Paralocks - Role-Based Information Flow Control and Beyond

机译:Paralocks - 基于角色的信息流量控制及更远

获取原文
获取外文期刊封面目录资料

摘要

This paper presents Paralocks, a language for building expressive but statically verifiable fine-grained information flow policies. Paralocks combine the expressive power of Flow Locks (Broberg & Sands, ESOP'06) with the ability to express policies involving runtime principles, roles (in the style of role-based access control), and relations (such as "acts-for" in discretionary access control). We illustrate the Paralocks policy language by giving a simple encoding of Myers and Liskov's Decentralized Label Model (DLM). Furthermore - and unlike the DLM - we provide an information flow semantics for full Paralock policies. Lastly we illustrate how Paralocks can be statically verified by providing a simple programming language incorporating Paralock policy specifications, and a static type system which soundly enforces information flow security according to the Paralock semantics.
机译:本文展示了副锁,一种用于建立表现力但静核可验证的细粒度信息流政策的语言。 Paralocks将流量锁(Broberg&Sands,Esop'06)的表现力与表达涉及运行时原则的政策,角色(以基于角色的访问控制的风格)以及关系(例如“行为为”)在酌情访问控制中)。我们通过为Myers和Liskov的分散标签模型(DLM)提供简单的编码来说明Paralocks策略语言。此外 - 与DLM不同 - 我们为完整的副股策略提供信息流语义。最后,我们通过提供包含副ock策略规范的简单编程语言和静态类型系统来说,如何通过提供副锁策略规范的简单编程语言来静核验证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号