On Practical Information Flow Policies for Java-Enabled Multiapplication Smart Cards - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2008

On Practical Information Flow Policies for Java-Enabled Multiapplication Smart Cards

Résumé

In the multiapplicative context of smart cards, a strict con- trol of underlying information flow between applications is highly desired. In this paper we propose a model to improve information flow usability in such systems by limiting the overhead for adding information flow security to a Java Virtual Machine. We define a domain specific lan- guage for defining security policies describing the allowed information flow inside the card. The applications are certified at loading time with respect to information flow security policies. We illustrate our approach on the LoyaltyCard, a multiapplicative smart card involving four loyalty applications sharing fidelity points.
Fichier non déposé

Dates et versions

inria-00544952 , version 1 (09-12-2010)

Identifiants

  • HAL Id : inria-00544952 , version 1

Citer

Dorina Ghindici, Isabelle Simplot-Ryl. On Practical Information Flow Policies for Java-Enabled Multiapplication Smart Cards. Proc. 8th Smart Card research and Advanced Application IFIP Conference (CARDIS 2008), 2008, Egham, Surrey, United Kingdom. pp.32--47. ⟨inria-00544952⟩
36 Consultations
0 Téléchargements

Partager

Gmail Facebook X LinkedIn More