Outline for October 20, 2006
Reading: §3.1–3.2, 4.1–4.3
- Greetings and felicitations!
- Puzzle of the day
- HRU Result
- Notion of leakage in terms of ACM
- Determining security of a generic system with
generic rights and monooperational commands is decidable
- Determining security of a generic system with
generic rights is undecidable
- Meaning: can't derive a generic algorithm;
must look at (sets of) individual case
- Policy
- Sets of authorized, unauthorized states
- Secure systems in terms of states
- Mechanism vs. policy
- Types of Policies
- Military/government vs. confidentiality
- Commercial vs. integrity