Object-Oriented Modeling of Security Semantics

نویسندگان

  • Ernst Ellmer
  • Günther Pernul
  • Gerti Kappel
چکیده

For applications with high requirements on the confidentiality of data a level-based access control policy may be appropriate. Designing such security critical applications is a less understood issue and thus complicated task. To guide a security administrator or database designer and in order to simplify the design activity several guidelines and a powerful modeling technique are necessary. This paper proposes an object-oriented modeling for multilevel secure database application design. The technique is build around the concept of application dependent classification constraints, supports a static, functional, as well as a dynamic view of the application, and offers an underlying design method. By means of an example we describe how the different models relate to each other and how a conceptualization of a multilevel secure application may be constructed. Object-Oriented Modeling of Security Semantics Abstract. For applications with high requirements on the confidentiality of data a level-based access control policy may be appropriate. Designing such security critical applications is a less understood issue and thus complicated task. To guide a security administrator or database designer and in order to simplify the design activity several guidelines and a powerful modeling technique are necessary. This paper proposes an object-oriented modeling for multilevel secure database application design. The technique is build around the concept of application dependent classification constraints, supports a static, functional, as well as a dynamic view of the application, and offers an underlying design method. By means of an example we describe how the different models relate to each other and how a conceptualization of a multilevel secure application may be constructed. For applications with high requirements on the confidentiality of data a level-based access control policy may be appropriate. Designing such security critical applications is a less understood issue and thus complicated task. To guide a security administrator or database designer and in order to simplify the design activity several guidelines and a powerful modeling technique are necessary. This paper proposes an object-oriented modeling for multilevel secure database application design. The technique is build around the concept of application dependent classification constraints, supports a static, functional, as well as a dynamic view of the application, and offers an underlying design method. By means of an example we describe how the different models relate to each other and how a conceptualization of a multilevel secure application may be constructed.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Declarative Semantics in Object-Oriented Software Development - A Taxonomy and Survey

One of the modern paradigms to develop an application is object oriented analysis and design. In this paradigm, there are several objects and each object plays some specific roles in applications. In an application, we must distinguish between procedural semantics and declarative semantics for their implementation in a specific programming language. For the procedural semantics, we can write a ...

متن کامل

Modeling and Evaluation of Stochastic Discrete-Event Systems with RayLang Formalism

In recent years, formal methods have been used as an important tool for performance evaluation and verification of a wide range of systems. In the view points of engineers and practitioners, however, there are still some major difficulties in using formal methods. In this paper, we introduce a new formal modeling language to fill the gaps between object-oriented programming languages (OOPLs) us...

متن کامل

Modeling and Evaluation of Stochastic Discrete-Event Systems with RayLang Formalism

In recent years, formal methods have been used as an important tool for performance evaluation and verification of a wide range of systems. In the view points of engineers and practitioners, however, there are still some major difficulties in using formal methods. In this paper, we introduce a new formal modeling language to fill the gaps between object-oriented programming languages (OOPLs) us...

متن کامل

The Impact of Inheritance on Security in Object-Oriented Database Systems

The object-oriented programming paradigm is becoming a popular development tool for large complex systems. This is happening for a variety of reasons, such as the richer and more natural data modeling capabilities of the object paradigm, its ability to capture application semantics, and the support it provides for rapid prototyping of systems. A prominent feature of the object paradigm is inher...

متن کامل

Modelsaz: An Object-Oriented Computer-Aided Modeling Environment

Modeling and simulation of processing plants are widely used in industry. Construction of a mathematical model for a plant is a time-consuming and error-prone task. In light of extensive advancements in computer science (both hardware and software), computers are becoming a necessary instrument in industrial activities. Many software tools for modeling, simulation and optimization of proces...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 1995