2007 The Third International Symposium on Information Assurance and Security
On the Definition and Policies of Confidentiality
Manchester, United Kingdom
August 29-August 31
ISBN: 0-7695-2876-7
In this paper we propose a more general definition of confidentiality, as an aspect of information security including information flow control. We discuss central aspects of confidentiality and their relation with norms and policies, and we introduce a language, with a deontic flavor, to express such norms and policies. Our language may be regarded as a first step towards a formal specification of security policies for confidentiality. We provide a number of examples of useful norms on confidentiality, and we discuss confidentiality policies from real scenarios.
Index Terms:
confidentiality, norms, policies.
Citation:
Johs Hansen Hammer, Gerardo Schneider, "On the Definition and Policies of Confidentiality," ias, pp.337-342, 2007 The Third International Symposium on Information Assurance and Security, 2007