Automated enforcement for relaxed information release with reference points

来源 :Science China(Information Sciences) | 被引量 : 0次 | 上传用户:yongqiangdd
下载到本地 , 更方便阅读
声明 : 本文档内容版权归属内容提供方 , 如果您对本文有版权争议 , 可与客服联系进行内容授权或下架
论文部分内容阅读
Language-based information flow security is a promising approach for enforcement of strong security and protection of the data confidentiality for the end-to-end communications. Here, noninterference is the standard and most restricted security property that completely forbids confidential data from being released to public context. Although this baseline property has been extensively enforced in various cases, there are still many programs, which are considered secure enough, violating this property in some way. In order to control the information release in these programs, the predetermined ways should be specified by means of which confidential data can be released. These intentional releases, also called declassifications, are regulated by several more relaxed security properties than noninterference. The security properties for controlled declassification have been developed on different dimensions with declassification goals. However, the mechanisms used to enforce these properties are still unaccommodating, unspecific, and insufficiently studied. In this work, a new security property, the Relaxed Release with Reference Points(R3P), is presented to limit the information that can be declassified in a program. Moreover, a new mechanism using reachability analysis has been proposed for the pushdown system to enforce R3 P on programs. In order to show R3 P is competent for use, it has been proved that it complies with the well-known prudent principles of declassification, and in addition finds some restrictions on our security policy. The widespread usage, precision, efficiency, and the influencing factors of our enforcement have been evaluated. Language-based information flow security is a promising approach for enforcement of strong security and protection of the data confidentiality for the end-to-end communications. Here, noninterference is the standard and most restricted security property that completely forbids confidential data from being released to public relations context. While this baseline property has been extensively enforced in various cases, there are still many programs, which are considered secure enough, violating this property in some programs. specified by means of which confidential data can be released. These intentional releases, also called declassifications, are regulated by several more relaxed security properties than noninterference. However, the mechanisms used to enforce these properti es this still unaccommodating, unspecific, and insufficiently studied. In this work, a new security property, the Relaxed Release with Reference Points (R3P), is presented to limit the information that can be declassified in a program. Moreover, a new mechanism using reachability analysis has been proposed for the pushdown system to enforce R3 P on programs. In order to show R3 P is competent for use, it has been verified that it complies with the well-known prudent principles of declassification, and in addition to fulfilling some restrictions on our security policy. The widespread usage, precision, efficiency, and the influencing factors of our enforcement have been evaluated.
其他文献
该文针对受到一类确定性干扰下的线性确定性单输入单输出离散时间系统给出自适应极点配置算法,并证明了算法的合局稳定性和对一大类特殊参考输出的最优跟踪特性。
本文首先从理论上较系统的描述了GaAs半导体光纤温度传感器的构成原理,并据此建立了有关的设计计算方法和技术。提出用LED耦合双尾纤的方法构成光纤温度传感系统,可有效解决
对有界扰动下的参数化严格反馈系统提出一种自适应控制算法,该算法可以保证闭环系统全局稳定而且尽量跟踪给定的参考信号.
该文提出了配置控制系统零极点的设计方法,指出配置闭环系统的非主极点及零点可以消除系统的固有零点及特定输入的极点,从而改善控制系统的跟踪特性,同时该文在控制系统中引进了
该文综述了目前国内外用于机器人控制的一些主要的自适应控制算法,将这些控制算法按其所采用的模型和规定系统性能要求的方式分为模型参考自适应控制、基于自回归模型的自适应
该文提出对结构和参数完全未知的离散时间不确定非线性系统的反馈控制方法,并针对运动控制中实际受非线性摩擦力影响的低速跟踪系统具体的控制器的设计,利用MATLAB环境下SIMULINK仿真来检验其