Only Connect, Securely

03/07/2019
by   Chandrika Bhardwaj, et al.
0

The lattice model proposed by Denning in her seminal work provided secure information flow analyses with an intuitive and uniform mathematical foundation. Different organisations, however, may employ quite different security lattices. In this paper, we propose a connection framework that permits different organisations to exchange information while maintaining both security of information flows as well as their autonomy in formulating and maintaining security policy. Our prescriptive framework is based on the rigorous mathematical framework of Lagois connections given by Melton, together with a simple operational model for transferring object data between domains. The merit of this formulation is that it is simple, minimal, adaptable and intuitive, and provides a formal framework for establishing secure information flow across autonomous interacting organisations. We show that our framework is semantically sound, by proving that the connections proposed preserve standard correctness notions such as non-interference.

READ FULL TEXT
POST COMMENT

Comments

There are no comments yet.

Authors

page 1

page 2

page 3

page 4

11/05/2020

Secure Information Flow Connections

Denning's lattice model provided secure information flow analyses with a...
09/21/2020

MLSNet: A Policy Complying Multilevel Security Framework for Software Defined Networking

Ensuring that information flowing through a network is secure from manip...
05/22/2021

Normalising Lustre Preserves Security

The synchronous reactive data flow language LUSTRE is an expressive lang...
06/27/2018

Formal Analysis of 5G Authentication

Mobile communication networks connect much of the world's population. Th...
09/16/2021

Towards a General-Purpose Dynamic Information Flow Policy

Noninterference offers a rigorous end-to-end guarantee for secure propag...
10/28/2021

Four-dimensional hybrid chaos system and its application in creating a secure image transfer environment by cellular automata

One of the most important and practical researches which has been consid...
08/27/2018

A Classification of BPMN Collaborations based on Safeness and Soundness Notions

BPMN 2.0 standard has a huge uptake in modelling business processes with...
This week in AI

Get the week's most popular data science and artificial intelligence research sent straight to your inbox every Saturday.