DocumentCode
3100272
Title
A taxonomy for information flow policies and models
Author
Foley, Simon N.
Author_Institution
ORA Corp., Ithaca, NY, USA
fYear
1991
fDate
20-22 May 1991
Firstpage
98
Lastpage
108
Abstract
A notation for describing information flow policies that can express transitive, aggregation and separation (of duty) exceptions is proposed. Operators for comparing, composing, and abstracting flow policies are described. These allow complex policies to be built from simpler policies. Many existing confidentiality (and by using a dual model, integrity) policies and their models can be captured in this framework. A high water mark model is described that can enforce a large class of these information flow policies. The model provides the basis for a taxonomy of existing high water mark mechanisms
Keywords
information theory; security of data; complex policies; confidentiality; dual model; high water mark model; information flow policies; integrity; Aggregates; Databases; Information security; Taxonomy; Upper bound;
fLanguage
English
Publisher
ieee
Conference_Titel
Research in Security and Privacy, 1991. Proceedings., 1991 IEEE Computer Society Symposium on
Conference_Location
Oakland, CA
Print_ISBN
0-8186-2168-0
Type
conf
DOI
10.1109/RISP.1991.130778
Filename
130778
Link To Document