U4. Chinese Wall

Beschreibung

Masters Comp Sec Mindmap am U4. Chinese Wall, erstellt von Craig Parker am 04/12/2013.
Craig Parker
Mindmap von Craig Parker, aktualisiert more than 1 year ago
Craig Parker
Erstellt von Craig Parker vor mehr als 10 Jahre
41
0

Zusammenfassung der Ressource

U4. Chinese Wall
  1. Aimed at a 'real' problem of preventing conflicts of interest
    1. Golden Rule = There must be no flow of information that causes a conflict of interest.
    2. Simple security (ss) property:
      1. A subject may only be granted access to an object if:
        1. the object is in the same company dataset as an object already accessed by the subject
          1. the object does not belong to any of the conflict of interest classes of objects already accessed by the subject
          2. deals with direct information flow
          3. Star property
            1. deals with indirect flow
              1. A subject s is permitted write access to an object only if s has no read access to any object o', which is in a different company dataset and is unsanitised
                1. One of the implications of the *-property is that access rights of subjects change dynamically with every access operation.
                2. You need to understand and appreciate how a different type of security policy can be described in terms of a security model.
                  Zusammenfassung anzeigen Zusammenfassung ausblenden

                  ähnlicher Inhalt

                  U2.1 Comp Sec: deals with prevention & detection of unauthorised actions by users of a comp system
                  Craig Parker
                  U3.2 Access Control Structures
                  Craig Parker
                  U3. Labels & Access Control
                  Craig Parker
                  U2.2 Fundamentals
                  Craig Parker
                  U3.1 Access Control
                  Craig Parker
                  U3.3 Administration
                  Craig Parker
                  U4. Security Models & Policy
                  Craig Parker
                  U4. Bell-LaPladula
                  Craig Parker
                  U4. Biba
                  Craig Parker
                  U4. Further Aspects of BLP
                  Craig Parker
                  U4. Harrison–Ruzzo–Ullman
                  Craig Parker