Controlled Declassification based on Intransitive Noninterference
Paper in proceeding, 2004

Traditional noninterference cannot cope with common features of secure systems like channel control, information filtering, or explicit downgrading. Recent research has addressed the derivation and use of weaker security conditions that could support such features in a language-based setting. However, a fully satisfactory solution to the problem has yet to be found. A key problem is to permit exceptions to a given security policy without permitting too much. In this article, we propose an approach that draws its underlying ideas from intransitive noninterference, a concept usually used on a more abstract specification level. Our results include a new bisimulation-based security condition that controls tightly where downgrading can occur and a sound security type system for checking this condition.

Author

Heiko Mantel

David Sands

Chalmers, Department of Computing Science, ProSec

Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)

03029743 (ISSN) 16113349 (eISSN)

Vol. 3302 129-145
978-3-540-23724-2 (ISBN)

Subject Categories (SSIF 2011)

Computer Science

DOI

10.1007/978-3-540-30477-7_9

ISBN

978-3-540-23724-2

More information

Created

10/7/2017