CDL: A LANGUAGE FOR SPECIFYING HIGH-LEVEL CROSS-DOMAIN SECURITY POLICIES

被引:0
|
作者
Thomas, Roshan
Tsang, Simon
机构
关键词
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We describe early research(1) on the cross-domain language (CDL). CDL represents the first comprehensive effort towards an end-user language for specifying cross-domain information release policies. The main features of CDL are (1) separation of "sender release" and "receiver acceptance" concerns through sender and receiver rules; (2) a variety of structuring mechanisms for the modular development, management and deployment of rule bases; (3) support for a rich set of regrading operators on simple as well as complex data types; (4) support for pre and post release obligation modeling and (5) modeling of advanced active access, usage and redissemination controls for better post-release control of information. We are currently investigating how policy specifications in CDL can be mapped to lower level and more general purpose security policy specification languages such as Ponder, XACML and related enforcement frameworks. This will eventually lead to the development of automated language translation and policy verification tools.
引用
收藏
页码:1154 / 1160
页数:7
相关论文
共 50 条
  • [1] Beyond separation of duty: An algebra for specifying high-level security policies
    Li, Ninghui
    Wang, Qihua
    [J]. JOURNAL OF THE ACM, 2008, 55 (03)
  • [2] Specifying and enforcing high-level semantic obligation policies
    Liu, Zhen
    Ranganathan, Anand
    Riabov, Anton
    [J]. EIGHTH IEEE INTERNATIONAL WORKSHOP ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS - PROCEEDINGS, 2007, : 119 - +
  • [3] Specifying and enforcing high-level semantic obligation policies
    Liu, Zhen
    Ranganathan, Anand
    Riabov, Anton
    [J]. JOURNAL OF WEB SEMANTICS, 2009, 7 (01): : 28 - 39
  • [4] CROSS-DOMAIN LEARNING METHODS FOR HIGH-LEVEL VISUAL CONCEPT CLASSIFICATION
    Jiang, Wei
    Zavesky, Eric
    Chang, Shih-Fu
    Loui, Alex
    [J]. 2008 15TH IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, VOLS 1-5, 2008, : 161 - 164
  • [5] FLEX - A HIGH-LEVEL LANGUAGE FOR SPECIFYING CUSTOMIZED MICROPROCESSORS
    COMER, DE
    GEHANI, NH
    [J]. IEEE TRANSACTIONS ON SOFTWARE ENGINEERING, 1985, 11 (04) : 387 - 396
  • [6] A high-level language for specifying XML data transformations
    Pankowski, T
    [J]. ADVANCES IN DATABASES AND INFORMATION SYSTEMS, PROCEEDINGS, 2004, 3255 : 159 - 172
  • [7] Verified enforcement of security policies for cross-domain information flows
    Swamy, Nikhil
    Hicks, Michael
    Tsang, Simon
    [J]. 2007 IEEE MILITARY COMMUNICATIONS CONFERENCE, VOLS 1-8, 2007, : 957 - +
  • [8] Cross-Domain NER using Cross-Domain Language Modeling
    Jia, Chen
    Liang, Xiaobo
    Zhang, Yue
    [J]. 57TH ANNUAL MEETING OF THE ASSOCIATION FOR COMPUTATIONAL LINGUISTICS (ACL 2019), 2019, : 2464 - 2474
  • [9] Realizing the CDL Cross-Domain Language in the Ponder2 Policy Framework: Experiences and Research Directions
    Thomas, Roshan K.
    Russello, Giovanni
    Tsang, Simon
    [J]. 2009 IEEE INTERNATIONAL SYMPOSIUM ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS, 2009, : 76 - +
  • [10] Enforcing high-level security policies for Internet of Things
    ChangJin Koo
    JeongYeon Kim
    [J]. The Journal of Supercomputing, 2018, 74 : 4497 - 4505