Title :
SDDM-a prototype of a distributed architecture for database security
Author :
Jensen, Catherine D. ; Kiel, Robert M. ; Verjinski, Richard D.
Author_Institution :
Unisys Defense Syst., McLean, VA, USA
Abstract :
A description is given of the secure distributed data management (SDDM) system, which is a prototype of a distributed architecture for multilevel database security that meets the US Department of Defense´s trusted computer system evaluation criteria at the B3 level. The distributed architecture separates data by its security classification onto multiple single-level back-end database hosts and uses distributed data-management technology to provide integrated access to the distributed multilevel database. Discretionary access control is provided by access views defined on the database. An overview of the SDDM system, particularly its security policy, design, and provisions for mandatory and discretionary access controls is provided
Keywords :
distributed databases; security of data; US DoD; access control; access views; back-end database hosts; database security; distributed architecture; secure distributed data management; trusted computer system evaluation criteria; Access control; Computer architecture; Computer security; Data security; Distributed databases; Government; National security; Operating systems; Protection; Prototypes;
Conference_Titel :
Data Engineering, 1989. Proceedings. Fifth International Conference on
Conference_Location :
Los Angeles, CA
Print_ISBN :
0-8186-1915-5
DOI :
10.1109/ICDE.1989.47236