Secure Access Control with High Access Precision.

Abstract

When classified data of different classifications are stored in a database, it is necessary for a contemporary database system to pass through other classified data to find the properly classified data. Although the user of the system may only see data classified at the user's level, the database system itself has breached the security by bringing the other classified data into the main memory from secondary storage. Additionally, the system is not efficient as it could be because unnecessary material has been retrieved. This is a problem in access precision. This thesis proposes a solution to the access precision and pass-through problems using a database counterpart to the mathematical concept of equivalence relations. Each record of the database contains at least one security attribute (e.g., classification) and the database is divided into compartments of records; Compartments are disjoint sets, where each compartment of records has the same aggregate of security attributes. A suitable database model, the Attribute-Based Data Model, is selected, and an example of implementation is provided. Keywords: Database security; Multilevel security; Computer security. (Theses)

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Mar 01, 1988
Accession Number
ADA194684

Entities

People

  • Gregory S. Hoppenstand

Organizations

  • Naval Postgraduate School

Tags

Communities of Interest

  • Air Platforms
  • C4I

DTIC Thesaurus Topics

  • Aircrafts
  • Artificial Intelligence
  • Classification
  • Computer Access Control
  • Computer Programs
  • Computer Science
  • Computers
  • Cybersecurity
  • Databases
  • Department Of Defense
  • Fighter Aircraft
  • Information Systems
  • Materials
  • Navy
  • Operating Systems
  • Security
  • United States

Fields of Study

  • Computer science

Readers

  • Database Systems and Applications
  • Hydrologic Risk Analysis and Mitigation.
  • Mathematical Modeling and Probability Theory.

Technology Areas

  • Cyber