| Architecture-based refinements for secure computer systems design |
| Full text |
Pdf
(321 KB)
|
| Source
|
PST; Vol. 380
archive
Proceedings of the 2006 International Conference on Privacy, Security and Trust: Bridge the Gap Between PST Technologies and Business Services
table of contents
Markham, Ontario, Canada
SESSION: Security computing
table of contents
Article No.: 15
Year of Publication: 2006
ISBN:1-59593-604-1
|
|
Authors
|
|
| Sponsor |
|
| Publisher |
|
| Bibliometrics |
Downloads (6 Weeks): 15, Downloads (12 Months): 70, Citation Count: 0
|
|
|
ABSTRACT
The successful design and implementation of secure systems must occur from the beginning. A component that must process data at multiple security levels is very critical and must go through additional evaluation to ensure the processing is secure. It is common practice to isolate and separate the processing of data at different levels into different components. In this paper we present architecture-based refinement techniques for the design of multilevel secure systems. We discuss what security requirements must be satisfied through the refinement process, including when separation works and when it does not. The process oriented approach will lead to verified engineering techniques for secure systems, which should greatly reduce the cost of certification of those systems.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
J. Alves-Foss, W. S. Harrison, P. Oman, and C. Taylor. The mils architecture for high-assurance embedded systems. International Journal of Embedded Systems, 1(1), January 2005.
|
 |
2
|
|
| |
3
|
J. P. Anderson. Computer security technology planning study. Technical report, Fort Washing, PA, 1972.
|
 |
4
|
Somo Banerjee , Chris A. Mattmann , Nenad Medvidovic , Leana Golubchik, Leveraging architectural models to inject trust into software systems, Proceedings of the 2005 workshop on Software engineering for secure systems—building trustworthy applications, p.1-7, May 15-16, 2005, St. Louis, Missouri
[doi> 10.1145/1083200.1083213]
|
| |
5
|
|
| |
6
|
D. E. Bell and L. LaPadula. Secure computer systems: Unified exposition and multics interpretation. MITRE technical report, MITRE Corporation, Bedford Massachusetts, 2997:ref A023 588, 1976.
|
| |
7
|
Lawrence Chung , Brian A. Nixon , Eric Yu, An approach to building quality into software architecture, Proceedings of the 1995 conference of the Centre for Advanced Studies on Collaborative research, p.13, November 07-09, 1995, Toronto, Ontario, Canada
|
| |
8
|
|
| |
9
|
|
| |
10
|
|
 |
11
|
|
| |
12
|
D. McCullough. Noninterference and the composability of security properties. In Proc. IEEE symposium on security and privacy, pages 177--187, 1988.
|
| |
13
|
|
| |
14
|
|
| |
15
|
|
| |
16
|
|
| |
17
|
|
| |
18
|
|
 |
19
|
|
| |
20
|
|
|