Modelling data secrecy and integrity

作者:

Highlights:

摘要

The paper describes a semantic data model used as a design environment for multilevel secure database applications. The proposed technique is built around the concept of security classification constraints (security semantics) and takes into account that security restrictions may either have effects on the static part of a system, on the behavior of the system (the system functions), or on both. As security constraints may influence each other appropriate integrity mechanisms are necessary and modelling of a multilevel application must be data as well as function driven. This functionality is included in the proposed semantic data model for multilevel security by developing secure data schemas, secure function schemas, a procedure for alternating iterative refinements on either schema, and a powerful integrity system to check the consistency of the classification constraints and of the multilevel secure database application.

论文关键词:Secrecy,Integrity,Security semantics,Database security,Information modelling

论文评审过程:Received 16 February 1996, Accepted 12 September 1997, Available online 2 March 1999.

论文官网地址:https://doi.org/10.1016/S0169-023X(97)00045-1