(30 points) Revisit the example for x := y + z in Section 17.1.1. Assume that x does not exist in state s. Confirm that information flows from y and z to x by computing H(y_{s} | x_{t}), H(y_{s}), H(z_{s} | x_{t}), and H(z_{s}) and showing that H(y_{s} | x_{t}) < H(y_{s}) and H(z_{s} | x_{t}) < H(z_{s}).
(20 points) Let L = (S_{L}, ≤_{L}) be a lattice. Prove that the structure IL = (S_{IL}, ≤_{IL}) is a lattice, where:
(20 points) Consider the rule of transitive confinement. Suppose a process needs to execute a subprocess in such a way that the child can access exactly two files, one only for reading and one only for writing.
Could capabilities be used to implement this? If so, how?
Could access control lists be used to implement this? If so, how?
(30 points) Consider the systems Louie and Dewey in Section 9.2.4.
Suppose the sends and receives for the buffers are non-blocking. Is the composition of Hughie, Dewey, and Louie still noninterference-secure? Justify your answer.
Suppose all buffers are unbounded. Is the composition of Hughie, Dewey, and Louie still noninterference-secure? Justify your answer.