Outline for February 1, 2006
Reading: text, §2, 3.1–3.2, 4.1–4.3
- Greetings and felicitations!
- Puzzle of the day
- Access Control Matrix
- Commands and conditions:
create-file, various flavors of
grant-right to show conditions
and nested commands
- Copy flag
- Attenuation of privileges
- HRU Result
- Notion of leakage in terms of ACM
- Determining security of a generic system with
generic rights and monooperational commands is decidable
- Determining security of a generic system with
generic rights is undecidable
- Meaning: can't derive a generic algorithm; must
look at (sets of) individual case
- Policy
- Sets of authorized, unauthorized states
- Secure systems in terms of states
- Mechanism vs. policy
- Types of Policies
- Military/government vs. confidentiality
- Commercial vs. integrity
Version of February 2, 2006 at 2:40PM
You can also obtain a PDF version of this.