DocumentCode :
2829080
Title :
A test for non-disclosure in security level translations
Author :
Rosenthal, David ; Fung, Francis
Author_Institution :
Odyssey Res. Associates Inc., Ithaca, NY, USA
fYear :
1999
fDate :
1999
Firstpage :
196
Lastpage :
206
Abstract :
Two security domains that want to exchange information securely may need to agree on translations of mandatory access control (MAC) labels of their information, if their MAC labels have a different syntax or semantics. It is desirable that these translations do not introduce any confidentiality violations. We present a property, the security level translation property (SLTP), which must hold if the security level translation functions satisfy MAC confidentiality. This property is in some sense the best possible non-disclosure test of the level translations in the absence of a “common domain” that gives the real relationships among the levels of the two domains
Keywords :
authorisation; data privacy; MAC labels; confidentiality violations; mandatory access control labels; nondisclosure test; security level translation property; semantics; syntax; Authorization; Communication system security; Contracts; Information security; Information systems; Laboratories; Marine vehicles; National security; Radio access networks; Testing;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Security and Privacy, 1999. Proceedings of the 1999 IEEE Symposium on
Conference_Location :
Oakland, CA
ISSN :
1081-6011
Print_ISBN :
0-7695-0176-1
Type :
conf
DOI :
10.1109/SECPRI.1999.766914
Filename :
766914
Link To Document :
بازگشت