Opacity with Orwellian Observers and Intransitive Non-Interference
نویسندگان
چکیده
Opacity is a general behavioural security scheme flexible enough to account for several specific properties. Some secret set of behaviors of a system is opaque if a passive attacker can never tell whether the observed behavior is a secret one or not. Instead of considering the case of static observability where the set of observable events is fixed off-line or dynamic observability where the set of observable events changes over time depending on the history of the trace, we consider Orwellian partial observability where unobservable events are not revealed unless a downgrading event occurs in the future of the trace. We show how to verify that some regular secret is opaque for a regular language L w.r.t. an Orwellian projection while it has been proved undecidable even for a regular language L w.r.t. a general Orwellian observation function. We finally illustrate relevancy of our results by proving the equivalence between the opacity property of regular secrets w.r.t. Orwellian projection and the intransitive non-interference property.
منابع مشابه
On the Decidability of Non Interference over Unbounded Petri Nets
Non-interference, in transitive or intransitive form, is defined here over unbounded (Place/Transition) Petri nets. The definitions are adaptations of similar, well-accepted definitions introduced earlier in the framework of labelled transition systems [4, 5, 8]. The interpretation of intransitive noninterference which we propose for Petri nets is as follows. A Petri net represents the composit...
متن کاملIntransitive Non-Interference by Unfolding
Non-interference characterizes the absence of undesired information flows in a computing system, by requiring that activities involving actions with higher level of confidentiality does not cause any observable effect at the lower level. Recently, a causal characterisation of non-interference on Petri nets has been given in terms of the unfolding semantics, a classical true concurrent semantics...
متن کاملCharacterizing Intransitive Non-Interference in Security Policies with Observability
This paper introduces a new algorithmic approach to the problem of checking the property of intransitive non-interference (INI) using discrete event systems (DES) tools and concepts. INI property is widely used in formal verification of security problems in computer systems and protocols. The approach consists of two phases: First a new property called iP observability (observability based on a...
متن کاملChecking and Enforcing Security through Opacity in Healthcare Applications
The Internet of Things (IoT) is a paradigm that can tremendously revolutionize health care thus benefiting both hospitals, doctors and patients. In this context, protecting the IoT in health care against interference, including service attacks and malwares, is challenging. Opacity is a confidentiality property capturing a system’s ability to keep a subset of its behavior hidden from passive obs...
متن کاملOpacity - Further Insights on an Information Flow Property
In [1], [2], [3] Bryans et al define a security property known as opacity. In this paper, we investigate possible relationships between opacity and several existing definitions for information flow, namely noninterference [8], [9], non-inference [15], nondeducibility [20] and nonleakage [21]. We show that non-interference implies opacity, and that non-inference is equivalent to opacity. We also...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2014