Guided Policy Generation for Application Authors
نویسندگان
چکیده
Polgen is a tool for human-guided semi-automated SE Linux security policy generation. Polgen processes traces of the dynamic behavior of a target program. In that behavior, it observes instances of information flow patterns such as Pipeline, Interpreter, and Proxy. Based on the patterns it detects, Polgen creates new SE Linux types and generates policy rules. Because the dynamic behavior is insufficient to determine security policy, Polgen presents a wizard-style interface for human interaction. We call the interaction “guided automatic policy generation.” We designed Polgen primarily for security administrators who confront unfamiliar programs and are obliged to integrate them into existing policy. This paper highlights changes made to Polgen to adapt it to the needs of application authors, people that are less likely to be well versed in SE Linux policy than are security administrators. Key changes include an architecture specification language and a refinement of the wizard-style interface for application authors. When complete, this tool will expand the community of policy authors, and further accelerate the adoption of SE Linux.
منابع مشابه
A New Generation of Physicians in Sub-Saharan Africa?; Comment on “Non-physician Clinicians in Sub-Saharan Africa and the Evolving Role of Physicians”
This commentary follows up on an editorial by Eyal and colleagues in which these authors discuss the implications of the emergence of non-physician clinicians (NPCs) on the health labour market for the education of medical doctors. We generally agree with those authors and we want to stress the importance of clarifying the terminology to describe these practitioners and of defining more formall...
متن کاملUltrasonic guided waves reflection from simple dent in pipe for defect rate estimation and parameters determination of axisymmetric wave generation source
In this paper, the reflection of ultrasonic guided waves from simple dent in pipes has been investigated using finite element method and the relationship between reflection coefficient of these waves and deformation rate has been determined. Also, the effect of the parameters of wave generation source on the generated wave field has been investigated using normal modes expansion method. At firs...
متن کاملFactors Affecting Photovoltaic Technology Application in Decentralized Electricity Production in Iran: a Conceptual Framework
Using a variety of solar power plants is one of the solutions governments use to respond to energy and sustainable development needs. While Iran has a strong potential for using solar energy, the application of solar energy, especially through PV technology, has been limited due to the country’s richness of fossil fuels and their low prices. Therefore, it is important to adopt effective strateg...
متن کاملpublications and other research outputs Watson : a gateway for next generation semantic web applications
(2007). Watson: a gateway for next generation semantic web applications. Copyright and Moral Rights for the articles on this site are retained by the individual authors and/or other copyright owners. For more information on Open Research Online's data policy on reuse of materials please consult the policies page.
متن کاملThe Open University ’ s repository of research publications and other research outputs Watson : a gateway for next generation semantic web applications
(2007). Watson: a gateway for next generation semantic web applications. Copyright and Moral Rights for the articles on this site are retained by the individual authors and/or other copyright owners. For more information on Open Research Online's data policy on reuse of materials please consult the policies page.
متن کامل