DocumentCode :
2555659
Title :
A Practical Approach to Identifying Storage and Timing Channels
Author :
Kemmerer, Richard
Author_Institution :
University of California, Santa Barbara
fYear :
1982
fDate :
26-28 April 1982
Firstpage :
66
Lastpage :
66
Abstract :
Recognizing and dealing with storage and timing channels when performing the security analysis of a computer system is an elusive task. Methods of discovering and dealing with these channels for the most part have been ad hoc, and those that are not are restricted to a particular specification language. This paper outlines a practical methodology for discovering storage and timing channels that can be used through all phases of the software life cycle to increase the assurance that all channels have been identified. The methodology is presented and its application to three different descriptions (English, formal specification, and high order language implementation) are discussed.
Keywords :
Access control; Permission; Process control; Software; Timing; Transforms;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Security and Privacy, 1982 IEEE Symposium on
Conference_Location :
Oakland, CA, USA
ISSN :
1540-7993
Print_ISBN :
0-8186-0410-7
Type :
conf
DOI :
10.1109/SP.1982.10007
Filename :
6234473
Link To Document :
بازگشت