10th Computer Security Foundations Workshop (CSFW '97) Security Engineering of Lattice-Based Policies Rockport, Massachusetts June 10-June 12 ISBN: 0-8186-7990-5
This paper describes an algebraic approach to the security engineering of lattice policies. The approach extends earlier lattice and algebraic work, and has two main goals. First, it seeks to model access control policies with anti-symmetry, reflexivity and transitivity exceptions using a lattice, and to propose an information flow security definition for the resulting set (POL) of policies. Second, it supports a constructive approach to policy specification through an algebraic structure (POL, AND, OR, NOT, =, <). This structure is homomorphic to Boolean algebra. The approach's goals and design decisions are influenced by the context in which it is being used: a library of reusable security components with tools to facilitate their reuse for securing application systems.
Index Terms:
Security engineering, lattice policy modeling, information flow security.
Citation:
Ciaran Bryce, "Security Engineering of Lattice-Based Policies," csfw, pp.195, 10th Computer Security Foundations Workshop (CSFW '97), 1997 Usage of this product signifies your acceptance of the Terms of Use. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||