Extending the enforcement power of truncation monitors using static analysis

نویسندگان

  • Hugues Chabot
  • Raphaël Khoury
  • Nadia Tawbi
چکیده

Runtime monitors are a widely used approach to enforcing security policies. Truncation monitors are based on the idea of truncating an execution before a violation occurs. Thus, the range of security policies they can enforce is limited to safety properties. The use of an a priori static analysis of the target program is a possible way of extending the range of monitorable properties. This paper presents an approach to producing an in-lined truncation monitor, which draws upon the above intuition. Based on an a priori knowledge of the program behavior, this approach allows, in some cases, to enforce more than safety properties and is more powerful than a classical truncation mechanism. We provide and prove a theorem stating that a truncation enforcement mechanism considering only the set of possible executions of a specific program is strictly more powerful than a mechanism considering all the executions over an alphabet of actions. a 2010 Elsevier Ltd. All rights reserved.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Generating In-Line Monitors for Rabin Automata

A promising solution to the problem of securing potentially malicious mobile code lies in the use of program monitors. Such monitors can be in-lined into an untrusted program to produce an instrumented code that provably satisfies the security policy. It is well known that enforcement mechanisms based on Schneider’s security automata only enforce safety properties [1]. Yet subsequent studies sh...

متن کامل

Power Quality Monitor Placement Using a Tri-level Approach

Finding minimum number of connecting lines is as important as locating power quality monitors (PQMs) for full observability of power system. Therefore, a PQM placement method should determine both optimum buses and lines, since utilities can make better decisions for monitoring of power system with this information. This paper attempted to propose a new method to locate the PQMs at various unob...

متن کامل

Extending Operational Zone of Rotary Power Flow Controller by Controlling Tap-changers of Transformers

This paper proposes a method for extending the ability of rotary power flow controller (RPFC) using tap-changer of the RPFC’s transformers. A detailed model of the device is presented to analyze the effects of the tap changer operation on the performance of the RPFC. To evaluate the results, the RPFC model is simulated using PSCAD/EMTDC software. Dynamic operation of the RPFC on a 400 kV transm...

متن کامل

On Static Bending, Elastic Buckling and Free Vibration Analysis of Symmetric Functionally Graded Sandwich Beams

This article presents Navier type closed-form solutions for static bending, elastic buckling and free vibration analysis of symmetric functionally graded (FG) sandwich beams using a hyperbolic shear deformation theory. The beam has FG skins and isotropic core. Material properties of FG skins are varied through the thickness according to the power law distribution. The present theory accounts fo...

متن کامل

Automata : Enforcement Mechanisms for Run - time Security Policies ?

We analyze the space of security policies that can be enforced by monitoring and modifying programs at run time. Our program monitors, called edit automata, are abstract machines that examine the sequence of application program actions and transform the sequence when it deviates from a specified policy. Edit automata have a rich set of transformational powers: They may terminate the application...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • Computers & Security

دوره 30  شماره 

صفحات  -

تاریخ انتشار 2011