Using architecture to reason about information security

9Citations
Citations of this article
50Readers
Mendeley users who have this article in their library.

Abstract

We demonstrate, by a number of examples, that information flow security properties can be proved from abstract architectural descriptions, which describe only the causal structure of a system and local properties of trusted components. We specify these architectural descriptions of systems by generalizing intransitive noninterference policies to admit the ability to filter information passed between communicating domains. A notion of refinement of such system architectures is developed that supports top-down development of architectural specifications and proofs by abstraction of information security properties. We also show that, in a concrete setting where the causal structure is enforced by access control, a static check of the access control setting plus local verification of the trusted components is sufficient to prove that a generalized intransitive noninterference policy is satisfied.

Cite

CITATION STYLE

APA

Chong, S., & Van Der Meyden, R. (2015). Using architecture to reason about information security. ACM Transactions on Information and System Security, 18(2). https://doi.org/10.1145/2829949

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free