Quantitative Information Flow for Scheduler-Dependent Systems

Yusuke Kawamoto 1 Thomas Given-Wilson 2, 3
1 COMETE - Concurrency, Mobility and Transactions
LIX - Laboratoire d'informatique de l'École polytechnique [Palaiseau], Inria Saclay - Ile de France
2 ESTASYS - Efficient STAtistical methods in SYstems of systems
Inria Rennes – Bretagne Atlantique , IRISA-D4 - LANGAGE ET GÉNIE LOGICIEL
Abstract : Quantitative information flow analyses measure how much information on secrets is leaked by publicly observable outputs. One area of interest is to quantify and estimate the information leakage of composed systems. Prior work has focused on running disjoint component systems in parallel and reasoning about the leakage compositionally, but has not explored how the component systems are run in parallel or how the leakage of composed systems can be minimised. In this paper we consider the manner in which parallel systems can be combined or scheduled. This considers the effects of scheduling channels where resources may be shared, or whether the outputs may be incrementally observed. We also generalise the attacker's capability, of observing outputs of the system, to consider attackers who may be imperfect in their observations, e.g. when outputs may be confused with one another, or when assessing the time taken for an output to appear. Our main contribution is to present how scheduling and observation effect information leakage properties. In particular, that scheduling can hide some leaked information from perfect observers, while some scheduling may reveal secret information that is hidden to imperfect observers. In addition we present an algorithm to construct a scheduler that minimises the min-entropy leakage and min-capacity in the presence of any observer.
Document type :
Conference papers
Complete list of metadatas

Cited literature [24 references]  Display  Hide  Download

https://hal.inria.fr/hal-01114778
Contributor : Catuscia Palamidessi <>
Submitted on : Tuesday, February 10, 2015 - 2:44:22 AM
Last modification on : Wednesday, March 27, 2019 - 4:41:28 PM
Long-term archiving on: Wednesday, May 27, 2015 - 5:54:03 PM

File

QAPL2015long.pdf
Files produced by the author(s)

Identifiers

  • HAL Id : hal-01114778, version 1

Citation

Yusuke Kawamoto, Thomas Given-Wilson. Quantitative Information Flow for Scheduler-Dependent Systems. The 13th International Workshop on Quantitative Aspects of Programming Languages and Systems (QAPL 2015), Apr 2015, London, United Kingdom. ⟨hal-01114778⟩

Share

Metrics

Record views

791

Files downloads

229