Bell-LaPadula Symbols

symbolwhat it represents
Sset of subjects
Oset of objects
Pset of rights
r ∈ Pread right
a ∈ Pwrite right (equivalent to append)
w ∈ Pread and write right
e ∈ Pempty right
Cset of clearances (for subjects) or classifications (for objects)
Kset of categories
L = C × Kset of security levels
fs(s)maximum security level of subject s
fc(s)current security level of subject s
fo(o)security level of object o
F = { fs(s), fc(s), fo(o)) }set of functions to map entity into security level
f = (fs(s), fc(s), fo(o))an element of the set F
Hset of hierarchy functions h ∈ H, where h: O → P(O)
Mset of possible access control matrices
V = { (b, m, f, h) }set of states of system
baccess control matrix m that excludes rights not allowed by f
Rset of requests for access
Dset of outcomes
y ∈ Pthe access is allowed
n ∈ Pthe access is not allowed
i ∈ Pthe request is illegal
e ∈ Pan error occurred in processing the request
W ⊆ R × D × V × Vset of actions of the system
X = RNset of sequences of requests
Y = DNset of sequences of decisions
Z = VNset of sequences of states
Σ(R, D, W, z0) ∈ X × Y × Ysystem representation

UC Davis sigil
Matt Bishop
Office: 2209 Watershed Sciences
Phone: +1 (530) 752-8060
Email: mabishop@ucdavis.edu
ECS 235B, Foundations of Computer and Information Security
Version of January 25, 2021 at 11:19PM

You can also obtain a PDF version of this.

Valid HTML 4.01 Transitional Built with BBEdit Built on a Macintosh