Automata-based Confidentiality Monitoring - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2006

Automata-based Confidentiality Monitoring

Résumé

Non-interference is typically used as a baseline security policy to formalize confidentiality of secret information manipulated by a program. In contrast to static checking of non-interference, this paper considers dynamic, automaton-based, monitoring of information flow for a single execution of a sequential program. The monitoring mechanism is based on a combination of dynamic and static analyses. During program execution, abstractions of program events are sent to the automaton, which uses the abstractions to track information flows and to control the execution by forbidding or editing dangerous actions. The mechanism proposed is proved to be sound, to preserve executions of well-typed programs (in the security type system of Volpano, Smith and Irvine), and to preserve some safe executions of ill-typed programs.
Fichier principal
Vignette du fichier
automatonBasedNiMonitoring.pdf (243.21 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)

Dates et versions

inria-00130210 , version 1 (09-02-2007)

Identifiants

  • HAL Id : inria-00130210 , version 1

Citer

Gurvan Le Guernic, Anindya Banerjee, Thomas Jensen, David Schmidt. Automata-based Confidentiality Monitoring. ASIAN'06: 11th Annual Asian Computing Science Conference, National Institute of Informatics, Dec 2006, Tokyo/Japan. ⟨inria-00130210⟩
164 Consultations
595 Téléchargements

Partager

Gmail Facebook X LinkedIn More