The SeaView security model

作者: D.E. Denning , T.F. Lunt , R.R. Schell , W.R. Shockley , M. Heckman

DOI: 10.1109/SECPRI.1988.8114

关键词: PolyinstantiationSecurity serviceData integrityDatabase modelDatabaseSoftware security assuranceComputer scienceComputer securityReference monitorSecurity information and event managementDatabase designInformation securitySecurity kernelSecurity policyComputer security modelDatabase transactionReferential integrity

摘要: A formal security policy model that uses basic view concepts for a secure multilevel relational database system is described. The formulated in two layers, one corresponding to kernel of reference monitor enforces mandatory security, and the other defining relations formalizing policies labeling new derived data, data consistency, discretionary transaction consistency. This includes sanitization, aggregation, downgrading. also defines application-independent properties entity integrity, referential polyinstantiation integrity. >

参考文章(9)
John Mclean, Reasoning About Security Models ieee symposium on security and privacy. pp. 123- 123 ,(1987) , 10.1109/SP.1987.10020
D. Elliott Bell, Leonard J. La Padula, Secure Computer System: Unified Exposition and Multics Interpretation Defense Technical Information Center. ,(1976) , 10.21236/ADA023588
Dorothy Elizabeth Robling Denning, A Multilevel Relational Data Model ieee symposium on security and privacy. pp. 220- 220 ,(1987) , 10.1109/SP.1987.10023
Teresa F. Lunt, Dorothy E. Denning, Roger R. Schell, Mark Heckman, William R. Shockley, Element-level classification with A1 assurance Computers & Security. ,vol. 7, pp. 73- 82 ,(1988) , 10.1016/0167-4048(88)90506-8
Dorothy E Denning, Selim G Akl, Mark Heckman, Teresa F. Lunt, Matthew Morgenstern, Peter G. Neumann, Roger R. Schell, Views for Multilevel Database Security IEEE Transactions on Software Engineering. ,vol. 13, pp. 129- 140 ,(1987) , 10.1109/TSE.1987.232889
Lawrence J. Shirley, Mechanism Sufficiency Validation by Assignment ieee symposium on security and privacy. pp. 26- 26 ,(1981) , 10.1109/SP.1981.10007
Patricia P. Griffiths, Bradford W. Wade, An authorization mechanism for a relational database system ACM Transactions on Database Systems. ,vol. 1, pp. 242- 255 ,(1976) , 10.1145/320473.320482