Title :
Implementing commercial data integrity with secure capabilities
Author_Institution :
Comput. Lab., Cambridge Univ., UK
Abstract :
The author examines the model of D.D. Clark and D.R. Wilson (1987) for commercial data integrity and proposes an implementation based on his own secure capability architecture. He shows how secure capabilities and protected subsystems are ideal for implementing commercial data integrity, but also indicates areas where the Clark-Wilson model may have difficulties in actual use. The level of formal verification required appears higher than would be feasible for most commercial systems and the user interface for specifying separation of duties appears extremely complex.
Keywords :
operating systems (computers); security of data; Clark-Wilson model; data integrity; formal verification; protected subsystems; secure capabilities; separation of duties; user interface; Context modeling; Data security; Engineering education; Formal verification; Information security; Lattices; Protection; Trademarks; User interfaces; Voice mail;
Conference_Titel :
Security and Privacy, 1988. Proceedings., 1988 IEEE Symposium on
Print_ISBN :
0-8186-0850-1
DOI :
10.1109/SECPRI.1988.8105