首页> 外文期刊>Journal of Automated Reasoning >CoCon: A Conference Management System with Formally Verified Document Confidentiality
【24h】

CoCon: A Conference Management System with Formally Verified Document Confidentiality

机译:Cocon:一个具有正式验证的文件保密的会议管理系统

获取原文
获取原文并翻译 | 示例

摘要

We present a case study in formally verified security for realistic systems: the information flow security verification of the functional kernel of a web application, the CoCon conference management system. We use the Isabelle theorem prover to specify and verify fine-grained confidentiality properties, as well as complementary safety and "traceback" properties. The challenges posed by this development in terms of expressiveness have led tobounded-deducibility security, a novel security model and verification method generally applicable to systems describable as input/output automata.
机译:我们在现实系统的正式验证安全性中提出了一个案例研究:Web应用程序功能内核的信息流安全验证,Cocon会议管理系统。我们使用Isabelle定理先驱来指定和验证细粒度的机密性,以及互补安全性和“回溯”属性。这种发展在表现力方面提出的挑战导致了陷入困境的推动性安全性,一种新的安全模型和验证方法,通常适用于可被描述为输入/输出自动机的系统。

著录项

获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号