Logo des Repositoriums
Zur Startseite
  • English
  • Deutsch
Anmelden
  1. Startseite
  2. SuUB
  3. Dissertationen
  4. Composition and Declassification in Possibilistic Information Flow Security
 
Zitierlink URN
https://nbn-resolving.de/urn:nbn:de:gbv:46-00107822-19

Composition and Declassification in Possibilistic Information Flow Security

Veröffentlichungsdatum
2019-09-12
Autoren
Bauereiß, Thomas  
Betreuer
Hutter, Dieter  
Gutachter
Beckert, Bernhard  
Zusammenfassung
Formal methods for security can rule out whole classes of security vulnerabilities, but applying them in practice remains challenging. This thesis develops formal verification techniques for information flow security that combine the expressivity and scalability strengths of existing frameworks. It builds upon Bounded Deducibility (BD) Security, which allows specifying and verifying fine-grained policies about what information may flow when to whom. Our main technical result is a compositionality theorem for BD Security, providing scalability by allowing us to verify security properties of a large system by verifying smaller components. Its practical utility is illustrated by a case study of verifying confidentiality properties of a distributed social media platform. Moreover, we discuss its use for the modular development of secure workflow systems, and for the security-preserving enforcement of safety and security properties other than information flow control.
Schlagwörter
information flow control

; 

Bounded Deducibility

; 

compositionality

; 

formal verification

; 

confidentiality

; 

distributed social media platforms

; 

workflow management systems

; 

safety properties

; 

separation of duty
Institution
Universität Bremen  
Fachbereich
Fachbereich 03: Mathematik/Informatik (FB 03)  
Dokumenttyp
Dissertation
Zweitveröffentlichung
Nein
Sprache
Englisch
Dateien
Lade...
Vorschaubild
Name

00107822-1.pdf

Size

1.88 MB

Format

Adobe PDF

Checksum

(MD5):15f6e46babdac349ad23ec9f000cb0ac

Built with DSpace-CRIS software - Extension maintained and optimized by 4Science

  • Datenschutzbestimmungen
  • Endnutzervereinbarung
  • Feedback schicken