(Enter summary)
Abstract: In this paper we show that the Schematic Protection Model (SPM) subsumes several
well-known protection models as particular instances. We show this for a diverse collection
of models including the Bell-LaPadula multi-level security model, take-grant
models, and grammatical protection systems. Remarkably SPM subsumes these models
within its known efficiently decidable cases for safety analysis (i.e., the determination
or whether or not a given privilege can possibly be acquired by a particular... (Update)
Context of citations to this paper: More
...has been done to extend the access matrix model to make the safety problem decidable. This includes the Schematic Protection Model [6, 113, 114] and the Typed Access Matrix Model [116] 6 DAC Models in OODBS In recent years there has been considerable efforts in the research...
...not appear to require arbitrary cycles in the cc graph. Acyclic cc, or at most attenuating loops in cc, appear to satisfy most requirements [23]. Thus, SPM has a remarkably useful demarcation between its decidable and undecidable cases for safety. This is in sharp contrast to...
Cited by: More
Authorization In Distributed Systems: A New Approach - Woo, Lam (1993)
(Correct)
Using Role-based Abstractions for Security Policy Specification.. - Ortalo (1997)
(Correct)
Terminology, Criteria And System Architectures For Data Integrity - Sandhu (1989)
(Correct)
Similar documents (at the sentence level):
63.6%: Expressive Power of the Schematic Protection Model - Center (1991)
(Correct)
Active bibliography (related documents): More All
2.6: The Typed Access Matrix Model - Sandhu (1992)
(Correct)
1.9: Undecidability Of Safety For The Schematic Protection Model With.. - Sandhu (1990)
(Correct)
1.1: Security Models - McLean (1994)
(Correct)
Similar documents based on text: More All
0.1: Handbook for the Computer Security Certification of.. - Chapter Overview Chapter (1995)
(Correct)
0.1: Simple Multi Function Vision System for 3D Data Acquisition - Sokolov, Max, Wallace (1994)
(Correct)
0.1: Decentralized Management of Security in Distributed Systems.. - Sandhu (1991)
(Correct)
Related documents from co-citation: More All
7: The Schematic Protection Model: Its Definition and Analysis for Acyclic Attenuat.. (context) - Sandhu - 1988
7: Securecomputer system: Unified exposition and multics interpretation (context) - Bell, LaPadula - 1975
6: Protection in operating systems (context) - Harrison, Ruzzo et al. - 1976
BibTeX entry: (Update)
Sandhu, R.S. "Expressive Power of the The Schematic Protection Model." Journal of Computer Security, Volume 1, Number 1, 1992, pages 59-98. http://citeseer.ist.psu.edu/sandhu92expressive.html More
@article{ sandhu92expressive,
author = "Ravi S. Sandhu",
title = "Expressive Power of the Schematic Protection Model",
journal = "Journal of Computer Security",
volume = "1",
number = "1",
year = "1992",
url = "citeseer.ist.psu.edu/sandhu92expressive.html" }
Citations (may not include all citations):
265
Secure Computer Systems: Unified Exposition and Multics Inte.. (context) - Bell, LaPadula - 1975
196
A Lattice Model of Secure Information Flow (context) - Denning - 1976
194
The Protection of Information in Computer Systems (context) - Saltzer, Schroeder - 1975
173
A Comparison of Commercial and Military Computer Security Po.. (context) - Clark, Wilson - 1987
124
Protection in Operating Systems (context) - Harrison, Ruzzo et al. - 1976
120
Integrity Considerations for Secure Computer Systems (context) - Biba - 1977
85
Formal Models for Computer Security (context) - Landwehr - 1981
28
The Schematic Protection Model: Its Definition and Analysis .. (context) - Sandhu - 1988
27
Protection - Principles and Practice (context) - Graham, Denning - 1972
27
Transaction-Control Expressions for Separation of Duties
- Sandhu - 1988
22
The Algebra of Security (context) - McLean - 1988
21
Formal Models of Capability-Based Protection Systems (context) - Snyder - 1981
18
A Linear Time Algorithm for Deciding Subject Security (context) - Lipton, Snyder - 1977
16
Transformation of Access Rights (context) - Sandhu - 1989
15
A Linear Time Algorithm for Deciding Security (context) - Jones, Lipton et al. - 1976
13
Secure Computer Systems: A Network Interpretation (context) - Bell - 1987
11
Monotonic Protection Systems (context) - Harrison, Ruzzo - 1978
11
The Source of Authority for Commercial Access Control (context) - Moffett, Sloman - 1988
11
A Comment on the `Basic Security Theorem' of Bell and LaPadu..
- McLean - 1985
10
The Best Available Technologies for Computer Security (context) - Landwehr - 1983
9
Specifying and Modeling Computer Security (context) - McLean - 1990
9
The Transfer of Information and Authority in a Protection Sy.. (context) - Bishop, Snyder - 1979
8
Extending the Creation Operation in the Schematic Protection.. (context) - Ammann, Sandhu - 1990
7
Reasoning About Security Models (context) - McLean - 1987
7
Safety Analysis for the Extended Schematic Protection Model (context) - Ammann, Sandhu - 1991
5
Selective and Locally Controlled Transport of Privileges (context) - Minsky - 1984
5
Theft of Information in the Take-Grant Protection Model (context) - Bishop - 1988
5
Safety in Grammatical Protection Systems (context) - Budd - 1983
5
Some Owner Based Schemes with Dynamic Groups in the Schemati.. (context) - Sandhu, Share - 1986
5
Using Mandatory Integrity to Enforce (context) - Lee - 1988
4
Implementing the Clark/Wilson Integrity Policy Using Current.. (context) - Schockley - 1988
4
Unidirectional Transport of Rights and TakeGrant Control (context) - Lockman, Minsky - 1982
4
The Bell-LaPadula Computer Security Model Represented as a S.. (context) - Pittelli - 1987
3
On Classes of Protection Systems (context) - Lipton, Budd - 1978
3
Some Variants of the Take-Grant Protection Model (context) - Biskup - 1984
3
Theft and Conspiracy in the Take-Grant Model (context) - Snyder - 1981
3
Report of the Invitational Workshop on Integrity Policy in C.. (context) - the, on et al. - 1989
2
The SSR Model for Specification of Authorization Policies: A.. (context) - Sandhu - 1984
2
The Demand Operation in the Schematic Protection Model
- Sandhu - 1989
2
Undecidability of the Safety Problem for The Schematic Prote.. (context) - Sandhu
1
Concerning (context) - Bell - 1988
The graph only includes citing articles where the year of publication is known.
Documents on the same site (http://www.list.gmu.edu/journal.htm): More
Access Control: Principles and Practice - Sandhu, Samarati (1994)
(Correct)
The Demand Operation in the Schematic Protection Model - Sandhu (1989)
(Correct)
The NTree: A Two Dimension Partial Order for Protection Groups - Sandhu (1989)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC