DATABASE SECURITY APPLICATIONS Polyinstantiation for Cover Stories

نویسنده

  • Ravi S. Sandhu
چکیده

1 I N T R O D U C T I O N Polyinstantiat ion has generated a great deal of controversy lately. Some have argued tha t polyinstantiat ion and integrity are fundamental ly incompatible, and have proposed alternatives to polyinstantiation. Others have argued about the correct definition of polyinstantiat ion and its operational semantics. Much has been writ ten about this topic, as can be seen from the bibliography of this paper. There are two extreme positions that can be identified with respect to polyinstantiation. Polyinstantiat ion and integrity are fundamental ly incompatible, and steps must be taken to avoid polyinstantiat ion in multilevel relations regardless of the cost. Polyinstantiat ion is an intrinsic phenomenon, inevitable in the multilevel world. Therefore, multilevel relations must be polyinstant iated whenever necessary. * The work of both authors was partially supported by the U.S. Air Force, Rome Air Development Center through contract #F-30602-92-C-002. We are indebted to Joe Giardono for making this work possible.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Polyinstantation for Cover Stories

In this paper we study the use of polyinstantiation, for the purpose of implementing cover stories in multilevel secure relational database systems. We de ne a particular semantics for polyinstantiation called PCS (i.e., polyinstantiation for cover stories). PCS allows two alternatives for each attribute (or attribute group) of a multilevel entity: (i) no polyinstantiation, or (ii) polyinstanti...

متن کامل

Cover Story Management

In a multilevel database, cover stories are usually managed using the ambiguous technique of polyinstantiation. In this paper, we define a new technique to manage cover stories and propose a formal representation of a multilevel database containing cover stories. Our model aims to be a generic model, that is, it can be interpreted for any kind of database (e.g. relational, objectoriented etc). ...

متن کامل

Logical Foundations of Multilevel Databases

In this paper, we propose a formal model for multilevel databases. This model aims at being a generic model, that is it can be interpreted for any kind of database (relational, object-oriented...). Our model has three layers. The first layer corresponds to a model for a non-protected database. The second layer corresponds to a model for a multilevel database. In this second layer, we propose a ...

متن کامل

Cover Story

Cover story has been a controversial concept for the last twenty years. This concept was first introduced in 1991 in the SEAVIEW project [2] as an explanation for the polyinstantiation technique used in multilevel databases, i.e. databases which support a multilevel security policy. To illustrate the concept of polyinstantiation, consider the example of multilevel relational database that conta...

متن کامل

Eliminating polyinstantiation securely

Polyinstantiation has generated a great deal of controversy lately. Some have argued that pol~nstantia~on and integriry are fundamentally incompatible, and have proposed alternatives to polyinstantiation. Others have argued about the correct definition of polyinstantiation and its operational semantics. In this paper we provide a fresh analysis of the basic problem that we are rrying ro solve; ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2005