• DocumentCode
    2359406
  • Title

    Security policy enforcement at the file system level in the Windows NT operating system family

  • Author

    Wolthusen, Stephen D.

  • Author_Institution
    Security Technol. Dept., Fraunhofer-IGD, Darmstadt, Germany
  • fYear
    2001
  • fDate
    10-14 Dec. 2001
  • Firstpage
    55
  • Lastpage
    63
  • Abstract
    This paper describes the implementation of an enforcement module for file system security implemented as part of a security architecture for distributed systems which enforces a centrally administered security policy under the Windows NT operating system platform. The mechanism provides mandatory access control, encryption, and auditing on an individual file basis across distributed systems while being fully transparent to both users and application programs and functioning regardless of the type of file system or its attachment mechanism.
  • Keywords
    auditing; authorisation; cryptography; file organisation; network operating systems; Windows NT; auditing; centrally administered security policy; distributed systems; encryption; enforcement module; file system security; mandatory access control; operating system; security architecture; security policy enforcement; Access control; Cryptography; Data security; Data structures; File systems; Information security; Labeling; Operating systems; Protection; Secure storage;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Security Applications Conference, 2001. ACSAC 2001. Proceedings 17th Annual
  • Print_ISBN
    0-7695-1405-7
  • Type

    conf

  • DOI
    10.1109/ACSAC.2001.991521
  • Filename
    991521