• DocumentCode
    462963
  • Title

    Formal Security Policy Model for a Common Criteria Evaluation

  • Author

    Park, Junkil ; Choi, Jin-Young

  • Author_Institution
    Theory & Formal Methods Lab., Korea Univ., Seoul
  • Volume
    1
  • fYear
    2007
  • fDate
    12-14 Feb. 2007
  • Firstpage
    277
  • Lastpage
    281
  • Abstract
    The common criteria (CC) is an international standard for evaluating secure, computer systems. The CC defines seven distinct evaluation assurance levels (EALs). The three highest EALs, the so-called high-assurance levels, require some degree of formalism, in development. The security policy model (SPM) is one of the documents required in formalism, in high-assurance levels. It is difficult to develop the formal SPM because the CC doesn´t specify how to make the document and industries have rarely published it. This paper shows a guideline for the development formal SPM and provides an example of formal SPM using Z, and proves the consistency and completeness of the SPM.
  • Keywords
    computer networks; telecommunication security; common criteria evaluation; evaluation assurance levels; formal security policy model; secure computer systems; Computer security; Data security; Databases; File servers; Information security; Information technology; Laboratories; Protection; Scanning probe microscopy; Smart cards;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Advanced Communication Technology, The 9th International Conference on
  • Conference_Location
    Gangwon-Do
  • ISSN
    1738-9445
  • Print_ISBN
    978-89-5519-131-8
  • Type

    conf

  • DOI
    10.1109/ICACT.2007.358355
  • Filename
    4195134