• DocumentCode
    3100272
  • Title

    A taxonomy for information flow policies and models

  • Author

    Foley, Simon N.

  • Author_Institution
    ORA Corp., Ithaca, NY, USA
  • fYear
    1991
  • fDate
    20-22 May 1991
  • Firstpage
    98
  • Lastpage
    108
  • Abstract
    A notation for describing information flow policies that can express transitive, aggregation and separation (of duty) exceptions is proposed. Operators for comparing, composing, and abstracting flow policies are described. These allow complex policies to be built from simpler policies. Many existing confidentiality (and by using a dual model, integrity) policies and their models can be captured in this framework. A high water mark model is described that can enforce a large class of these information flow policies. The model provides the basis for a taxonomy of existing high water mark mechanisms
  • Keywords
    information theory; security of data; complex policies; confidentiality; dual model; high water mark model; information flow policies; integrity; Aggregates; Databases; Information security; Taxonomy; Upper bound;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Research in Security and Privacy, 1991. Proceedings., 1991 IEEE Computer Society Symposium on
  • Conference_Location
    Oakland, CA
  • Print_ISBN
    0-8186-2168-0
  • Type

    conf

  • DOI
    10.1109/RISP.1991.130778
  • Filename
    130778