DocumentCode :
3083417
Title :
Data Provenance architecture to support Information Assurance in a Multi-Level Secure Environment
Author :
Moitra, Abha ; Barnett, Bruce ; Crapo, Andrew ; Dill, Stephen J.
Author_Institution :
Gen. Electr. Global Res., Niskayuna, NY, USA
fYear :
2009
fDate :
18-21 Oct. 2009
Firstpage :
1
Lastpage :
7
Abstract :
We describe a framework for capturing data provenance information to support Information assurance attributes like availability, authentication, confidentiality, integrity and non-repudiation. Our approach is applicable to multi-level secure systems where it is not always possible to directly provide data source and data transformation information. We achieve this by combining the subjective and objective trust in data as a "Figure of Merit" value that can cross security boundaries. Our architecture captures the data provenance information around the \´invariant\´ part of a message in an XML-based SOA architecture. We also introduce the notion of \´wrappers\´ so that data provenance can be added on while minimizing impact to an existing workflow. We outline a simulation-based framework that allows us to inject faults to model various threats and attacks. We also discuss a dashboard view of a workflow that brings together the intrinsic information assurance attributes of a workflow as it was designed as well as its execution in a deployed system. The dashboard can also be used for "what-if analysis to understand vulnerabilities and determine impact of compromised assets.
Keywords :
XML; security of data; software architecture; Figure of Merit value; XML-based SOA architecture; data provenance architecture; information assurance; multilevel secure systems; service oriented architecture; what-if analysis; Authentication; Collaboration; Computer languages; Data security; Information security; Peer to peer computing; Routing; Service oriented architecture; Simple object access protocol; Transport protocols;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Military Communications Conference, 2009. MILCOM 2009. IEEE
Conference_Location :
Boston, MA
Print_ISBN :
978-1-4244-5238-5
Electronic_ISBN :
978-1-4244-5239-2
Type :
conf
DOI :
10.1109/MILCOM.2009.5379854
Filename :
5379854
Link To Document :
بازگشت