loading...
Security Engineering of Lattice-Based Policies
Rockport, Massachusetts June 10-June 12
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/CSFW.1997.59681310th Computer Security Foundations Wo ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Ciaran Bryce, GMD - German National Research Center for Information Technology
This paper describes an algebraic approach to the security engineering of lattice policies. The approach extends earlier lattice and algebraic work, and has two main goals. First, it seeks to model access control policies with anti-symmetry, reflexivity and transitivity exceptions using a lattice, and to propose an information flow security definition for the resulting set (POL) of policies. Second, it supports a constructive approach to policy specification through an algebraic structure (POL, AND, OR, NOT, =, <). This structure is homomorphic to Boolean algebra. The approach's goals and design decisions are influenced by the context in which it is being used: a library of reusable security components with tools to facilitate their reuse for securing application systems.
Index Terms:
Security engineering, lattice policy modeling, information flow security.
Citation:
Ciaran Bryce, "Security Engineering of Lattice-Based Policies," csfw, pp.195, 10th Computer Security Foundations Workshop (CSFW '97), 1997
Usage of this product signifies your acceptance of the Terms of Use.