DocumentCode :
2420686
Title :
EM Enforcing Information Flow Properties using Compensating Events
Author :
Gamage, Thoshitha T. ; McMillin, Bruce M.
Author_Institution :
Dept. of Comput. Sci., Missouri Univ. of Sci. & Technol., Rolla, MO
fYear :
2009
fDate :
5-8 Jan. 2009
Firstpage :
1
Lastpage :
7
Abstract :
Deeply embedded infrastructures are pervasive systems that have significant cyber and physical components, interacting with each other in complex ways. These interactions can violate a system\´s security policy leading to unintended information flow. Execution monitor (EM) enforceability is the concept of monitoring a system during runtime for any security policy violations and terminating the execution if such violations occur. EM enforceable mechanisms require that the properties being enforced be restricted to safety properties. Information flow properties are considered non-EM enforceable because they can not be defined using safety properties. To bridge this gap, prior work has presented a monitor that predicts future possible events, then evaluates these as safety properties. Unfortunately, in a pervasive system, evaluating future possible events results in a physical, observable, change to the system. What is needed is a physical "undo" operation in which a physical setting can be explored, then undone in a way that no unintended information flow results. This paper presents the concepts of compensating events and a compensating couple which can be used to EM enforce information flow properties in pervasive systems.
Keywords :
embedded systems; safety; security of data; system monitoring; ubiquitous computing; compensating events; embedded infrastructures; execution monitor; information flow properties; pervasive systems; physical undo operation; safety properties; security policy; Automatic control; Control systems; Information security; Intelligent systems; Mechanical factors; Monitoring; Pipelines; Power system security; Research and development; Safety;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
System Sciences, 2009. HICSS '09. 42nd Hawaii International Conference on
Conference_Location :
Big Island, HI
ISSN :
1530-1605
Print_ISBN :
978-0-7695-3450-3
Type :
conf
DOI :
10.1109/HICSS.2009.181
Filename :
4755796
Link To Document :
بازگشت