DocumentCode
2359406
Title
Security policy enforcement at the file system level in the Windows NT operating system family
Author
Wolthusen, Stephen D.
Author_Institution
Security Technol. Dept., Fraunhofer-IGD, Darmstadt, Germany
fYear
2001
fDate
10-14 Dec. 2001
Firstpage
55
Lastpage
63
Abstract
This paper describes the implementation of an enforcement module for file system security implemented as part of a security architecture for distributed systems which enforces a centrally administered security policy under the Windows NT operating system platform. The mechanism provides mandatory access control, encryption, and auditing on an individual file basis across distributed systems while being fully transparent to both users and application programs and functioning regardless of the type of file system or its attachment mechanism.
Keywords
auditing; authorisation; cryptography; file organisation; network operating systems; Windows NT; auditing; centrally administered security policy; distributed systems; encryption; enforcement module; file system security; mandatory access control; operating system; security architecture; security policy enforcement; Access control; Cryptography; Data security; Data structures; File systems; Information security; Labeling; Operating systems; Protection; Secure storage;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Security Applications Conference, 2001. ACSAC 2001. Proceedings 17th Annual
Print_ISBN
0-7695-1405-7
Type
conf
DOI
10.1109/ACSAC.2001.991521
Filename
991521
Link To Document