A Framework for High Assurance Security of Distributed Objects

نویسندگان

  • John Hale
  • Jody Threet
  • Sujeet Shenoi
چکیده

High assurance security is di cult to achieve in distributed computer systems and databases because of their complexity, non-determinism and inherent heterogeneity. The practical application of formal methods is the key to high assurance security in open, distributed environments. This paper proposes the use of formal methods and a special layered architecture to achieve secure interoperation of heterogeneous distributed objects. The foundation is provided by ROC, a process calculus tailored for concurrent objects. Lying above ROC in the layered architecture is a meta-object model for creating object models with various programming constructs, mega-programming facilities and security mechanisms. Successive layers of the architecture represent more sophisticated toolkits for modeling distributed objects. Since each layer inherits ROC's formal foundation, it automatically has an unambiguous semantics and supports veri cation.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A Dual Framework for High Assurance Distributed Object Security

High assurance security is extremely di cult to acheive in distributed computer systems due to their inherent non-determinism and heterogeneity. The practical application of formal methods is the key to high assurance security in open, distributed environments. This paper presents a methodology that applies formal methods within a dual framework to achieve secure interoperation of heterogeneous...

متن کامل

Model Meta - Object Model

High assurance security is extremely diicult to acheive in distributed computer systems due to their inherent non-determinism and heterogeneity. The practical application of formal methods is the key to high assurance security in open, distributed environments. This paper presents a methodology that applies formal methods within a dual framework to achieve secure interoperation of heterogeneous...

متن کامل

An Environment for Developing Securely Interoperable Heterogeneous Distributed Objects

PROJECT DESCRIPTION The heterogeneity a n d v olatility of open distributed systems make high assurance security a n elusive goal. One solution is to provide developers with tools for designing and implementing robust object systems with veriiable behavior in open environments (Cleaveland et al., 1 9 9 4). The Meta-Object Operating System Environment (MOOSE) (Hale et al., 1997) is intended to s...

متن کامل

A Security Design for a Wide-Area Distributed System

Designing security of wide-area distributed systems is a highly complicated task. The complexity of underlying distribution and replica-tion infrastructures together with the diversity of application scenarios increases the number of security requirements that must be addressed. High assurance requires the security enforcement to be isolated from non-security relevant functions and limited in t...

متن کامل

Role Delegation for a Distributed, Unified RBAC/MAC*

The day-today operations of corporations and government agencies rely on inter-operating legacy, COTs, databases, clients, servers, etc., which are brought together into a distributed environment running middleware (e.g., CORBA, JINI, DCOM, etc.). Both access control and security assurance within these distributed applications is paramount. Of particular concern is the delegation of authority, ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 1996