Framework for Managing Metadata Security Tags as the Basis for Making Security Decisions.

Abstract

This thesis presents an analysis of a capability to employ CAPCO (Controlled Access Program Coordination Office) compliant Metadata security tags as the basis for making security decisions. My research covers all the security aspects of the related technologies, such as XML, Web Services, Java API's for XML, NET Architecture to help determine how security conscious enterprises such as the Intelligence Community can implement this approach in the real insecure world, with commercial off-the-self products, to meet their needs. There were many concerns about using the XML Metadata Label Tags as the basis for making security decisions, due to an un-trusted environment. By using appropriate trusted parts, when really necessary, and new technologies, we can find secure solutions for creating, storing and disseminating XML documents. Besides the theoretical research, this thesis also presents a prototype development of a Web Service that can handle most of the tasks (save, save locally, review etc), which are required to securely manage XML documents. In order to implement the above Web Service, open-source products, such as Java and Apache Tomcat Web Server, are used. These are not only available free, easily testable and commonly used, but they provide us with a great interoperability among almost all the platforms. The implementation can also be done by using other competitive technologies or platforms or can even use similar or related commercial products.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Dec 01, 2002
Accession Number
ADA411313

Entities

People

  • Panagiotis Aposporis

Organizations

  • Naval Postgraduate School

Tags

Communities of Interest

  • Biomedical
  • Cyber
  • Energy and Power Technologies
  • Materials and Manufacturing Processes

DTIC Thesaurus Topics

  • Basic Programming Language
  • Computer Network Security
  • Computer Program Documentation
  • Computer Programming
  • Computer Programs
  • Computer Science
  • Computers
  • Cryptography
  • Database Management Systems
  • Information Systems
  • Object-Relational Database Management Systems
  • Operating Systems
  • Programming Languages
  • Relational Database Management Systems
  • Security Protocols
  • Web Browsers
  • Web Service

Fields of Study

  • Computer science

Readers

  • Cybersecurity.
  • Database Systems and Applications
  • Team-Based Human-Centered Cognitive Task Decision Making and Information Performance.