login
english version rss feed
inria-00130210, version 1
See detailed view  BibTeX  EndNote  TEI  RefWorks
Automata-based Confidentiality Monitoring
Gurvan Le Guernic (, http://www.irisa.fr/lande/gleguern/) 12, Anindya Banerjee (http://www.cis.ksu.edu/~ab/) 1, Thomas Jensen (, http://www.irisa.fr/lande/jensen) a2, David Schmidt (http://www.cis.ksu.edu/~schmidt/home.html) 1
(2006)
Icone de automatonBasedNiMonitoring.pdf
ASIAN'06: 11th Annual Asian Computing Science Conference (2006)
Non-interference is typically used as a baseline security policy to formalize confidentiality of secret information manipulated by a program. In contrast to static checking of non-interference, this paper considers dynamic, automaton-based, monitoring of information flow for a single execution of a sequential program. The monitoring mechanism is based on a combination of dynamic and static analyses. During program execution, abstractions of program events are sent to the automaton, which uses the abstractions to track information flows and to control the execution by forbidding or editing dangerous actions. The mechanism proposed is proved to be sound, to preserve executions of well-typed programs (in the security type system of Volpano, Smith and Irvine), and to preserve some safe executions of ill-typed programs.
a –  CNRS
1:  Department of Computing and Information Sciences
Kansas State University
2:  LANDE (INRIA - IRISA)
CNRS : UMR6074 – INRIA – Institut National des Sciences Appliquées de Rennes – Université de Rennes 1
Computer Science/Programming Languages
Computer Science/Cryptography and Security
Computer Science/Software Engineering
Language-based security – Monitoring – Automata – Information flow – Confidentiality – Non-interference