Title :
Secure contexts for confidential data
Author :
Bossi, Annalisa ; Macedonio, Damiano ; Piazza, Carla ; Rossi, Sabina
Author_Institution :
Dipt. di Informatica, Universita Ca´´ Foscari di Venezia, Italy
Abstract :
Information flow security in a multilevel system aims at guaranteeing that no high level information is revealed to low level users, even in the presence of any possible malicious process. This requirement could be too demanding when some knowledge about the environment (context) in which the process is going to run is available. To deal with these simulations we introduce the notion of secure contexts for a class of processes. This notion is parametric with respect to both the observation equivalence and the operation used to characterize the low level behavior of a process. We mainly analyze the cases of bisimulation and trace equivalence. We describe how to build secure contexts in these cases and we show that two well-known security properties, named BNDC and NDC, are just special instances of our general notion.
Keywords :
bisimulation equivalence; data privacy; formal specification; bisimulation equivalence; confidential data; high level information; information flow; information security; low level user; malicious process; multilevel system; secure context; security guarantee; trace equivalence; Computer security; Data security; Information security; Multilevel systems; Pins; Portable computers; Protection;
Conference_Titel :
Computer Security Foundations Workshop, 2003. Proceedings. 16th IEEE
Print_ISBN :
0-7695-1927-X
DOI :
10.1109/CSFW.2003.1212702