Advertisement

Specification and validation of a security policy model

  • Tony Boswell
Industrial Usage Reports
Part of the Lecture Notes in Computer Science book series (LNCS, volume 670)

Abstract

This paper describes the development of a formal security policy model, in Z, for the NATO Air Command and Control System (ACCS): a large, distributed, multi-level-secure system. The model was subject to manual validation, and some of the issues and lessons in both writing and validating the model are discussed.

Keywords

Security Property Operation Schema Covert Channel Security Check Security Constraint 
These keywords were added by machine and not by the authors. This process is experimental and the keywords may be updated as the learning algorithm improves.

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. 1.
    Barden, R., Stepney, S., Cooper D.: The Use of Z. Z User Workshop York 1991. Ed. J Nicholls. Springer-Verlag (1992).Google Scholar
  2. 2.
    Bell, D.E., LaPadula, L.J.: Secure Computer System: Unified Exposition and Multics Interpretation. MTR-2997 Revision 1. (March 1976).Google Scholar
  3. 3.
    Clark, D.D., Wilson, D.R.: A Comparison of Commercial and Military Computer Security Policies. Proceedings of the IEEE Symposium on Security and Privacy (1987).Google Scholar
  4. 4.
    Flynn, M., Hoverd, T., Brazier, D.: Formaliser — An Interactive Support Tool for Z. Z User Workshop Oxford 1989. Ed. J Nicholls. Springer-Verlag (1989).Google Scholar
  5. 5.
    Semmens, L., Allen, P.: Using Yourdon and Z: an Approach to Formal Specification Z User Workshop Oxford 1990. Ed. JE Nicholls. Springer-Verlag (1991).Google Scholar
  6. 6.
    Polack, F., Whiston, M., Hitchcock, P.: Structured Analysis — A Draft Method for Writing Z Specifications. Z User Workshop York 1991. Ed. J Nicholls. Springer-Verlag (1992).Google Scholar
  7. 7.
    Stepney, S.: Entity Relationship Diagrams and Z — The Best of Both Worlds. Logica Advanced Software Engineering Division Technical Report 3 (1991).Google Scholar
  8. 8.
    Penny, D.A., Holt, R.C., Godfrey, M.W.: Formal Specification in Metamorphic Programming. VDM '91 — 4th International Symposium of VDM Europe Proceedings. Springer-Verlag (1991).Google Scholar
  9. 9.
    Garlan, D., Delisle, N.: Formal Specifications as Reusable Frameworks VDM '90 — 3rd International Symposium of VDM Europe Proceedings. Springer-Verlag (1990).Google Scholar

Copyright information

© Springer-Verlag Berlin Heidelberg 1993

Authors and Affiliations

  • Tony Boswell
    • 1
  1. 1.Logica Cambridge LimitedCambridge

Personalised recommendations