首页> 外文会议>International conference on security management >Generic Semantics Specification and Processing for Inter-System Information Flow Tracking
【24h】

Generic Semantics Specification and Processing for Inter-System Information Flow Tracking

机译:系统间信息流跟踪的通用语义规范和处理

获取原文

摘要

Data usually takes different shapes and appears as files, windows, processes' memory, network connections, etc. Information flow tracking technology keeps an eye on these different representations of a data item. Integrated with a usage control (UC) infrastructure, this allows us to enforce UC requirements on each representation of a protected data item. To enable UC enforcement in distributed settings, we need to be able to track information flows across system boundaries. In this paper we introduce a state-based information flow model for tracking explicit flows between systems equipped with UC technology. We demonstrate the applicability of our approach by means of an instantiation in the field of video surveillance, where systems are increasingly accessed via insecure mobile applications. Based on usage control and inter-system information flow tracking, we show how video data transmitted from a video surveillance server to mobile clients can be protected against illegitimate duplication and redistribution after receipt.
机译:数据通常采用不同的形状,并显示为文件,Windows,进程的内存,网络连接等。信息流跟踪技术在这些数据项的这些不同表示中保持着注意。与使用控制(UC)基础架构集成,这允许我们在受保护数据项的每个表示上强制执行UC要求。要在分布式设置中启用UC强制执行,我们需要能够跟踪系统边界的信息流。在本文中,我们介绍了一种基于状态的信息流模型,用于跟踪配备UC技术的系统之间的显式流动。我们通过视频监控领域的实例化展示了我们方法的适用性,其中通过不安全的移动应用程序越来越多地访问系统。基于使用控制和系统间信息流跟踪,我们展示了如何防止从视频监控服务器传输到移动客户端的视频数据,以防止非法重复和在收到后重新分配。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号