Intransitive Non-Interference by Unfolding

نویسندگان

  • Paolo Baldan
  • Francesco Burato
  • Alberto Carraro
چکیده

Non-interference characterizes the absence of undesired information flows in a computing system, by requiring that activities involving actions with higher level of confidentiality does not cause any observable effect at the lower level. Recently, a causal characterisation of non-interference on Petri nets has been given in terms of the unfolding semantics, a classical true concurrent semantics, enabling quite efficient checks of the property. Concretely, the non-intereference requirement is too strict and it is necessary to offer downgradings, namely the possibility of declassifying information: confidential actions have been performed prior to a downgrading become visible without concern about information leakage. Here we the unfolding-based characterisation can be extended to trhe BINI property (Bisimilarity-based Intransitive NonInterference), a formalization of non-interference in presence of downgrading transitions. This generalisation includes an algorithm for checking BINI for safe Petri nets which relies on the construction of suitable complete prefixes of the unfolding. A further gain of efficiency arises from an orthogonal extension, namely the possibility of dealing with Petri nets with read arcs.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

On the Decidability of Non Interference over Unbounded Petri Nets

Non-interference, in transitive or intransitive form, is defined here over unbounded (Place/Transition) Petri nets. The definitions are adaptations of similar, well-accepted definitions introduced earlier in the framework of labelled transition systems [4, 5, 8]. The interpretation of intransitive noninterference which we propose for Petri nets is as follows. A Petri net represents the composit...

متن کامل

Characterizing Intransitive Non-Interference in Security Policies with Observability

This paper introduces a new algorithmic approach to the problem of checking the property of intransitive non-interference (INI) using discrete event systems (DES) tools and concepts. INI property is widely used in formal verification of security problems in computer systems and protocols. The approach consists of two phases: First a new property called iP observability (observability based on a...

متن کامل

On Intransitive Non-interference in Some Models of Concurrency

Intransitive non-interference (INI for short) is a behavioural property extensively studied by Rushby over deterministic automata with outputs associated to transitions (Mealy machines) in order to discuss security of systems where declassification of secret information is allowed. In this paper, we first propose a natural transposition of Rushby’s definition on deterministic labelled transitio...

متن کامل

Opacity with Orwellian Observers and Intransitive Non-Interference

Opacity is a general behavioural security scheme flexible enough to account for several specific properties. Some secret set of behaviors of a system is opaque if a passive attacker can never tell whether the observed behavior is a secret one or not. Instead of considering the case of static observability where the set of observable events is fixed off-line or dynamic observability where the se...

متن کامل

A comparison of semantic models for intransitive noninterference⋆

Noninterference is a notion of information flow security, originally defined for transitive information flow policies. A number of different definitions of noninterference have been proposed for intransitive policies. These definitions are stated with respect to several different semantic models, including state machines with observations on states, state machines with outputs associated to act...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2014