10 citations found. Retrieving documents...
J. Rushby. Noninterference, transitivity and channel-control security policies. Technical report, SRI, 1992.

 Home/Search   Document Not in Database   Summary   Related Articles   Check  

This paper is cited in the following contexts:
A Type System for Robust Declassification - Zdancewic (2003)   (7 citations)  (Correct)

....use the libraries without appropriate checks, making them vulnerable to using strings read from an untrusted source such as the network. Analyses that nd such format string vulnerabilities in C [22] are similar to integrity only information ow analysis. Intransitive noninterference policies [19,14,18] generalize noninterference to describe systems that contain restricted downgrading mechanisms. The work by Bevier et al. on controlled interference [3] is most similar to this work in allowing policies for information released to a set of agents. 6 Conclusions Security typed languages are a ....

John Rushby. Noninterference, transitivity and channel-control security policies. Technical report, SRI, 1992.


Robust Declassification - Zdancewic, Myers (2001)   (15 citations)  (Correct)

....and Liskov [15] define a form of selective declassification that can be checked at compile time, based on the authority of the declassifying process. However, these efforts provide only limited characterization of the safety of the declassification process. Intransitive noninterference policies [19, 17, 18] generalize noninterference to describe systems that contain restricted downgrading mechanisms. The work by Bevier et al. on controlled interference [3] is most similar to this work in allowing the specification of policies for information released to a set of agents. Their notion of agent largely ....

J. Rushby. Noninterference, transitivity and channel-control security policies. Technical report, SRI, 1992.


Secure Program Partitioning - Zdancewic, Zheng, Nystrom, Myers (2002)   (Correct)

....policy are explicit in the labels appearing in the program; others are implicit in the declassifications and endorsements made in the program text. There has been some work on specifying end to end security for systems containing downgrading, such as the work on intransitive noninterference [38, 34] and on robust declassification [52] Jif and secure program partitioning are complementary to current initiatives for privacy protection on the Internet. For example, the recent Platform for Privacy Preferences (P3P) 32] provides a uniform system for specifying users confidentiality policies. ....

John Rushby. Noninterference, transitivity and channel-control security policies. Technical report, SRI, 1992.


Untrusted Hosts and Confidentiality: Secure Program.. - Zdancewic, Zheng.. (2001)   (12 citations)  (Correct)

....policy are explicit in the labels appearing in the program; others are implicit in the declassifications and endorsements made in the program text. There has been some work on specifying end to end security for systems containing downgrading, such as the work on intransitive noninterference [38, 34] and on robust declassification [49] Jif and secure program partitioning are complementary to current initiatives for privacy protection on the Internet. For example, the recent Platform for Privacy Preferences (P3P) 32] provides a uniform system for specifying users confidentiality policies. ....

John Rushby. Noninterference, transitivity and channel-control security policies. Technical report, SRI, 1992.


Robust Declassification - Zdancewic, Myers (2001)   (15 citations)  (Correct)

....and Liskov [15] define a form of selective declassification that can be checked at compile time, based on the authority of the declassifying process. However, these efforts provide only limited characterization of the safety of the declassification process. Intransitive noninterference policies [19, 17, 18] generalize noninterference to describe systems that contain restricted downgrading mechanisms. The work by Bevier et al. on controlled interference [3] is most similar to this work in allowing the specification of policies for information released to a set of agents. Their notion of agent largely ....

J. Rushby. Noninterference, transitivity and channel-control security policies. Technical report, SRI, 1992.


Untrusted Hosts and Confidentiality: Secure Program.. - Zdancewic, Zheng.. (2001)   (12 citations)  (Correct)

....policy are explicit in the labels appearing in the program; others are implicit in the declassifications and endorsements made in the program text. There has been some work on specifying end to end security for systems containing downgrading, such as the work on intransitive noninterference [38, 34] and on robust declassification [49] Jif and secure program partitioning are complementary to current initiatives for privacy protection on the Internet. For example, the recent Platform for Privacy Preferences (P3P) 32] provides a uniform system for specifying users confidentiality policies. ....

John Rushby. Noninterference, transitivity and channel-control security policies. Technical report, SRI, 1992.


A Kernelized Architecture for Multilevel Secure Application Policies - Foley (1998)   (1 citation)  (Correct)

....(oid 2 dom ffi first(oid ) req ) then lab = ffi oid ) req else lab = invisible 4 Security Analysis Since the actions of the label manager are not mediated by the security kernel we must prove that it is multilevel secure. This is done by using an unwound version of non interference [6, 14] to prove that no series of high level requests to the manager can interfere with what a low level, or disjoint level, user can view. State LabelStore looks the same as state LabelStore 0 , when viewed from security level vl , if the label projections of the objects, whose levels are dominated ....

J. Rushby. Noninterference, transitivity and channel-control security policies. Technical Report SRI-CSL-92-02, SRI International, Menlo Park, CA., December 1992.


Owned Policies for Information Security - Chen, Chong (2004)   (1 citation)  (Correct)

No context found.

J. Rushby. Noninterference, transitivity and channel-control security policies. Technical report, SRI, 1992.


Modelling Opacity using Petri Nets - Bryans, Koutny, Ryan (2004)   (Correct)

No context found.

J.Rushby: Noninterference, Transitivity and Channel-Control Security Policies. SRI Techical Report (1992)


Supporting Secure Canonical Upgrade Policies in Multilevel Secure.. - Foley (1997)   (Correct)

No context found.

J. Rushby. Noninterference, transitivity and channel-control security policies. Technical Report SRI-CSL-92-02, SRI International, Menlo Park, CA., Dec. 1992.

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC