|
ABSTRACT
There has been an abundance of research within the last couple of decades in the area of multilevel secure (MLS) databases. Recent work in this field deals with the processing of multilevel transactions, expanding the logic of MLS query languages, and utilizing MLS principles within the realm of E-Business. However, there is a basic flaw within the MLS logic, which obstructs the handling of clearance-invariant aggregate queries and physical-entity related queries where some of the information in the database may be gleaned from the outside world. This flaw stands in the way of a more pervasive adoption of MLS models by the developers of practical applications. This paper clearly identifies the cause of this impediment -- the cover story dependence on the value of a user-defined key -- and proposes a practical solution.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
|
| |
2
|
D. E. Bell and L. J. LaPadula, "Secure Computer Systems: Mathematical Foundations and Model," Technical Report, MITRE Corporation, 1974.
|
| |
3
|
D. E. Denning, "The Sea View Security Model", Proceedings: IEEE Symposium on Security and Privacy, Oakland, California, pp. 218--233, 1988.
|
| |
4
|
|
| |
5
|
J. T. Haigh, R. C. O'Brien, and D. J. Thomasen "The LDV Secure Relational DBMS Model," Database Security IV: Status and Prospects, edited by S. Jajodia and C. E. Landwehr, North-Holland, pp. 265--279, 1991.
|
 |
6
|
|
| |
7
|
S. Jajodia, and R. Sandhu, "Polyinstantiation Integrity in Multilevel Relations," Proceedings: IEEE Symposium on Security and Privacy, Oakland, California, pp. 104--115, 1990.
|
 |
8
|
|
| |
9
|
B. Jukic, N. Jukic, L. Meamber, and G. Nezlek, "Implementing Polyinstantiation as a Strategy for Electronic Commerce Customer Relationship Management," International Journal of Electronic Commerce, Vol. 7, No. 2, pp. 9--30, 2003.
|
 |
10
|
|
| |
11
|
N. Jukic, Vrbsky S., Parrish A., Dixon B., and Jukic B. "A Belief-Consistent Multilevel Secure Relational Data Model", Information Systems, Vol. 24, No. 5, pp. 377--402, 1999
|
| |
12
|
|
| |
13
|
S. Nestorov and N. Jukic, "Implementing SEID as a Solution for Connecting NKCS", The University of Chicago, Computer Science Department, Technical Report TR-2003-03, 2003
|
 |
14
|
|
| |
15
|
|
| |
16
|
|
| |
17
|
|
|