Role-based scheduling and synchronization algorithms to prevent illegal information flow

被引:0
|
作者
Enokido, Tomoya [1 ]
Barolli, Valbona [2 ]
Takizawa, Makoto [2 ]
机构
[1] Rissho Univ, Tokyo, Japan
[2] Tokyo Denki Univ, Tokyo, Japan
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Information systems have to be consistent and secure in presence of multiple conflicting transactions. The role-based access control model is widely used to keep information systems secure. Here, a role is a set of access rights, i.e. permissions. A subject is granted a family of roles, i.e. one or more than one role. A subject s is allowed to issue a method op to an object o only if an access right < o, op > is included in the roles granted to the subject s. In the access control models, even if every access request satisfies the access rules, illegal information flow might occur as well known confinement problem. In this paper, we define a legal information flow relation (R-1 double right arrow R-2) among a pair of role families R, and R2. This means, no illegal information flow occur if a transaction T, with a role family R, is performed prior to another transaction T-2 with R2. In addition, we define which role families are more significant than others in terms of types of methods and security classes of objects. Conflicting methods from different transactions are totally ordered in the significancy of roles of the transactions. We discuss how to synchronize transactions so as to prevent illegal information flow and how to serialize conflicting methods from multiple transactions in terms of significancy and information flow relation of roles families.
引用
收藏
页码:238 / +
页数:2
相关论文
共 50 条
  • [1] Synchronization Protocols to Prevent Illegal Information Flow in Role-based Access Control Systems
    Nakamura, Shigenari
    Doulikun, Dilewaer
    Aikebaier, Ailixier
    Enokido, Tomoya
    Takizawa, Makoto
    [J]. 2014 EIGHTH INTERNATIONAL CONFERENCE ON COMPLEX, INTELLIGENT AND SOFTWARE INTENSIVE SYSTEMS (CISIS),, 2014, : 279 - 286
  • [2] A Synchronization Protocol to Prevent Illegal Information Flow Based on Maximal Roles in the Role-Based Access Control Model
    Hayashi, Shohei
    Nakamura, Shigenari
    Duolikun, Dilawaer
    Enokido, Tomoya
    Takizawa, Makoto
    [J]. ADVANCES ON BROADBAND AND WIRELESS COMPUTING, COMMUNICATION AND APPLICATIONS, BWCCA-2018, 2019, 25 : 525 - 533
  • [3] Preventing Illegal Information Flow Based on Role-Based Access Control Model
    Enokido, Toaloya
    Takizawa, Makoto
    [J]. NETWORK-BASED INFORMATION SYSTEMS, PROCEEDINGS, 2008, 5186 : 242 - +
  • [4] A read-write abortion protocol to prevent illegal information flow in role-based access control systems
    Nakamura, Shigenari
    Duolikun, Dilawaer
    Enokido, Tomoya
    Takizawa, Makoto
    [J]. INTERNATIONAL JOURNAL OF SPACE-BASED AND SITUATED COMPUTING, 2016, 6 (01) : 43 - 53
  • [5] Read-abortion (RA) based synchronization protocols to prevent illegal information flow
    Nakamura, Shigenari
    Duolikun, Dilawaer
    Takizawa, Makoto
    [J]. JOURNAL OF COMPUTER AND SYSTEM SCIENCES, 2015, 81 (08) : 1441 - 1451
  • [6] Read-Write Abortion (RWA) Based Synchronization Protocols to Prevent Illegal Information Flow
    Nakamura, Shigenari
    Duolikun, Dilewaer
    Aikebaier, Ailixier
    Enokido, Tomoya
    Takizawa, Makoto
    [J]. 2014 17TH INTERNATIONAL CONFERENCE ON NETWORK-BASED INFORMATION SYSTEMS (NBIS 2014), 2014, : 120 - 127
  • [7] Role locks to prevent illegal information flow among objects
    Chon, R
    Enokido, T
    Wietrzsk, V
    Takizawa, M
    [J]. 18TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS, VOL 1 (LONG PAPERS), PROCEEDINGS, 2004, : 196 - 201
  • [8] Role-based Information Flow Control Models
    Nakamura, Shigenari
    Doulikun, Dilewaer
    Aikebaier, Ailixier
    Enokido, Tomoya
    Takizawa, Makoto
    [J]. 2014 IEEE 28TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2014, : 1140 - 1147
  • [9] Paralocks - Role-Based Information Flow Control and Beyond
    Broberg, Niklas
    Sands, David
    [J]. ACM SIGPLAN NOTICES, 2010, 45 (01) : 431 - 444
  • [10] Paralocks - Role-Based Information Flow Control and Beyond
    Broberg, Niklas
    Sands, David
    [J]. POPL'10: PROCEEDINGS OF THE 37TH ANNUAL ACM SIGPLAN-SIGACT SYMPOSIUM ON PRINCIPLES OF PROGRAMMING LANGUAGES, 2010, : 431 - 444