DocumentCode
3387657
Title
Report from the second RADC database security workshop
Author
Lunt, Teresa F.
Author_Institution
SRI Int., Comput. Sci. Lab., Menlo Park, CA, USA
fYear
1989
fDate
4-8 Dec 1989
Firstpage
310
Lastpage
313
Abstract
The second RADC (Rome Air Development Center) Invitational Database Security Workshop (held May 15-18 in Bethlehem, New Hampshire) focused on multilevel security issues for Class B3 or A1 database systems. The workshop participants discussed operating system support for secure database systems; database system process privilege; mandatory, discretionary, and need-to-know requirements; modeling issues; auditing; and vendor developments. Perhaps the most valuable part of the workshop was the discussion of the homework problem, a 22-page specification for a multilevel secure (MLS) database. The participants discovered that it is important to know what makes a particular datum classified in order to known how to protect that datum in a secure database system. They also discovered that, for most of the systems under development, the discretionary access controls did not have nearly the flexibility that the application required. It was concluded that discretionary access controls on views are needed, pointing to the need for balanced assurance
Keywords
database management systems; security of data; RADC; Rome Air Development Center; database security workshop; database systems; discretionary access controls; homework problem; multilevel security issues; operating system support; secure database system; secure database systems;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Security Applications Conference, 1989., Fifth Annual
Conference_Location
Tucson, AZ
Print_ISBN
0-8186-2006-4
Type
conf
DOI
10.1109/CSAC.1989.81067
Filename
81067
Link To Document