• DocumentCode
    3387657
  • Title

    Report from the second RADC database security workshop

  • Author

    Lunt, Teresa F.

  • Author_Institution
    SRI Int., Comput. Sci. Lab., Menlo Park, CA, USA
  • fYear
    1989
  • fDate
    4-8 Dec 1989
  • Firstpage
    310
  • Lastpage
    313
  • Abstract
    The second RADC (Rome Air Development Center) Invitational Database Security Workshop (held May 15-18 in Bethlehem, New Hampshire) focused on multilevel security issues for Class B3 or A1 database systems. The workshop participants discussed operating system support for secure database systems; database system process privilege; mandatory, discretionary, and need-to-know requirements; modeling issues; auditing; and vendor developments. Perhaps the most valuable part of the workshop was the discussion of the homework problem, a 22-page specification for a multilevel secure (MLS) database. The participants discovered that it is important to know what makes a particular datum classified in order to known how to protect that datum in a secure database system. They also discovered that, for most of the systems under development, the discretionary access controls did not have nearly the flexibility that the application required. It was concluded that discretionary access controls on views are needed, pointing to the need for balanced assurance
  • Keywords
    database management systems; security of data; RADC; Rome Air Development Center; database security workshop; database systems; discretionary access controls; homework problem; multilevel security issues; operating system support; secure database system; secure database systems;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Security Applications Conference, 1989., Fifth Annual
  • Conference_Location
    Tucson, AZ
  • Print_ISBN
    0-8186-2006-4
  • Type

    conf

  • DOI
    10.1109/CSAC.1989.81067
  • Filename
    81067