Formal Models of Composable Security Architectures
Abstract
The objective of this project is to develop formal technology to support the development of secure systems. Presently much research and practice in security is concerned with particular enforcement mechanisms, and implementation or code-level vulnerabilities. At this late stage in the development of a system many security flaws are difficult to detect and fix. A more general formulation of security supports specification and analysis, and provides strong implementation-independent guarantees. It makes it possible to consider security from the early design of a system. To contribute toward this goal this project exploits results on the compositionality of information-flow properties to develop formal models and lightweight formal techniques that allow the specification and analysis of confidentiality and integrity requirements, and can be used to explore the design space of systems meeting such requirements.
Document Details
- Document Type
- Technical Report
- Publication Date
- Oct 01, 2011
- Accession Number
- ADA552859
Entities
People
- Dilia E. Rodriguez
Organizations
- Air Force Research Laboratory