Title :
Enforcing IRM security policies: Two case studies
Author :
Jones, Micah ; Hamlen, Kevin W.
Author_Institution :
Univ. of Texas at Dallas, Dallas, TX
Abstract :
SPoX (Security Policy XML) is a declarative language for specifying application security policies for enforcement by In-lined Reference Monitors. Two case studies are presented that demonstrate how this language can be used to effectively enforce application-specific security policies for untrusted Java applications in the absence of source code.
Keywords :
XML; rewriting systems; security of data; system monitoring; IRM security policies; Java applications; SPoX; application-specific security policies; declarative language; in-lined reference monitors; security policy XML; Access control; Application software; Automata; Data security; Java; Operating systems; Safety; Specification languages; Virtual machining; XML;
Conference_Titel :
Intelligence and Security Informatics, 2009. ISI '09. IEEE International Conference on
Conference_Location :
Dallas, TX
Print_ISBN :
978-1-4244-4171-6
Electronic_ISBN :
978-1-4244-4173-0
DOI :
10.1109/ISI.2009.5137306