Controlled Declassification based on Intransitive Noninterference
Paper i proceeding, 2004

Traditional noninterference cannot cope with common features of secure systems like channel control, information filtering, or explicit downgrading. Recent research has addressed the derivation and use of weaker security conditions that could support such features in a language-based setting. However, a fully satisfactory solution to the problem has yet to be found. A key problem is to permit exceptions to a given security policy without permitting too much. In this article, we propose an approach that draws its underlying ideas from intransitive noninterference, a concept usually used on a more abstract specification level. Our results include a new bisimulation-based security condition that controls tightly where downgrading can occur and a sound security type system for checking this condition.

Författare

Heiko Mantel

David Sands

Chalmers, Institutionen för datavetenskap, ProSec

Lecture Notes in Computer Science

0302-9743 (ISSN)

Vol. 3302 129-145

Ämneskategorier

Datavetenskap (datalogi)

DOI

10.1007/978-3-540-30477-7_9

ISBN

978-3-540-23724-2

Mer information

Skapat

2017-10-07