Title :
Specification and validation of a security policy model
Author :
Boswell, Anthony
Author_Institution :
Logica Cambridge Ltd., UK
fDate :
2/1/1995 12:00:00 AM
Abstract :
The paper describes the development of a formal security policy model in Z for the NATO Air Command and Control System (ACCS): a large, distributed, multilevel-secure system. The model was subject to manual validation, and some of the issues and lessons in both writing and validating the model are discussed
Keywords :
aerospace control; aircraft computers; command and control systems; formal specification; program verification; security of data; specification languages; NATO Air Command and Control System; Z; formal security policy model; manual validation; multilevel-secure syste; security policy model; specification; validation; Access control; Certification; Command and control systems; Communication system security; Computer security; Costs; Cryptography; Information security; Production; Writing;
Journal_Title :
Software Engineering, IEEE Transactions on