DATABASE SECURITY APPLICATIONS Polyinstantiation for Cover Stories
نویسنده
چکیده
1 I N T R O D U C T I O N Polyinstantiat ion has generated a great deal of controversy lately. Some have argued tha t polyinstantiat ion and integrity are fundamental ly incompatible, and have proposed alternatives to polyinstantiation. Others have argued about the correct definition of polyinstantiat ion and its operational semantics. Much has been writ ten about this topic, as can be seen from the bibliography of this paper. There are two extreme positions that can be identified with respect to polyinstantiation. Polyinstantiat ion and integrity are fundamental ly incompatible, and steps must be taken to avoid polyinstantiat ion in multilevel relations regardless of the cost. Polyinstantiat ion is an intrinsic phenomenon, inevitable in the multilevel world. Therefore, multilevel relations must be polyinstant iated whenever necessary. * The work of both authors was partially supported by the U.S. Air Force, Rome Air Development Center through contract #F-30602-92-C-002. We are indebted to Joe Giardono for making this work possible.
منابع مشابه
Polyinstantation for Cover Stories
In this paper we study the use of polyinstantiation, for the purpose of implementing cover stories in multilevel secure relational database systems. We de ne a particular semantics for polyinstantiation called PCS (i.e., polyinstantiation for cover stories). PCS allows two alternatives for each attribute (or attribute group) of a multilevel entity: (i) no polyinstantiation, or (ii) polyinstanti...
متن کاملCover Story Management
In a multilevel database, cover stories are usually managed using the ambiguous technique of polyinstantiation. In this paper, we define a new technique to manage cover stories and propose a formal representation of a multilevel database containing cover stories. Our model aims to be a generic model, that is, it can be interpreted for any kind of database (e.g. relational, objectoriented etc). ...
متن کاملLogical Foundations of Multilevel Databases
In this paper, we propose a formal model for multilevel databases. This model aims at being a generic model, that is it can be interpreted for any kind of database (relational, object-oriented...). Our model has three layers. The first layer corresponds to a model for a non-protected database. The second layer corresponds to a model for a multilevel database. In this second layer, we propose a ...
متن کاملCover Story
Cover story has been a controversial concept for the last twenty years. This concept was first introduced in 1991 in the SEAVIEW project [2] as an explanation for the polyinstantiation technique used in multilevel databases, i.e. databases which support a multilevel security policy. To illustrate the concept of polyinstantiation, consider the example of multilevel relational database that conta...
متن کاملEliminating polyinstantiation securely
Polyinstantiation has generated a great deal of controversy lately. Some have argued that pol~nstantia~on and integriry are fundamentally incompatible, and have proposed alternatives to polyinstantiation. Others have argued about the correct definition of polyinstantiation and its operational semantics. In this paper we provide a fresh analysis of the basic problem that we are rrying ro solve; ...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2005