Stating Security Requirements with Tolerable Sets

1Citations
Citations of this article
6Readers
Mendeley users who have this article in their library.

Abstract

This paper introduces and develops the concept of tolerable sets for analyzing general security requirements. Tolerable sets, and corresponding purging functions and invisibility based on the sets, are used to state and test such requirements. The approach used in this paper resulted from our attempt to apply the noninterference ideas of Goguen and Meseguer to the problem of stating special security requirements in the case of so-called trusted subjects. It turns out that the conditional purging function defined by Goguen and Meseguer is only one example, though an important one, of a conditional purging function. This paper provides a definition and characterization of a general class of purging functions similar to the purging function of Goguen and Meseguer. Furthermore, it relates purging and invisibility to security requirements. Some particular applications are described toward the end of the paper. At the end there are some critical remarks about purging functions. © 1988, ACM. All rights reserved.

Cite

CITATION STYLE

APA

Johnson, D. M., & Thayer, F. J. (1988). Stating Security Requirements with Tolerable Sets. ACM Transactions on Computer Systems (TOCS), 6(3), 284–295. https://doi.org/10.1145/45059.214409

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free