Title :
Approximate non-interference
Author :
Di Pierro, Alessandra ; Hankin, Chris ; Wiklicky, Herbert
Author_Institution :
Dipt. di Inf., Pisa Univ., Italy
Abstract :
We address the problem of characterising the security of a program against unauthorised information flows. Classical approaches are based on non-interference models which depend ultimately on the notion of process equivalence. In these models confidentiality is an absolute property stating the absence of any illegal information flow. We present a model in which the notion of non-interference is approximated in the sense that it allows for some exactly quantified leakage of information. This is characterised via a notion of process similarity which replaces the indistinguishability of processes by a quantitative measure of their behavioural difference. Such a quantity is related to the number of statistical tests needed to distinguish two behaviours. We also present two semantics-based analyses of approximate noninterference and we show that one is a correct abstraction of the other.
Keywords :
equivalence classes; process algebra; security of data; behavioural difference; non-interference; process equivalence; process similarity; security; unauthorised information flows; Computer languages; Computer security; Conferences; Educational institutions; Information security; Parallel processing; Power system security; System testing;
Conference_Titel :
Computer Security Foundations Workshop, 2002. Proceedings. 15th IEEE
Print_ISBN :
0-7695-1689-0
DOI :
10.1109/CSFW.2002.1021803