470 likes | 610 Vues
This chapter provides an in-depth review of information system security focusing on confidentiality policies. It explores the Bell-LaPadula (BLP) model, including security clearance and classification processes, and discusses the significance of categories in military systems. The text delves into POsets (Partially Ordered Sets) as a foundational concept, outlining their definitions and properties such as reflexivity, transitivity, and anti-symmetry. Additionally, it reviews the tranquility controversy, highlighting the implications of these systems on information security.
E N D
1. 1 ISA 662 Information System Security Confidentiality Policies
Chapter 5
2. 2 Overview Review and background
Review - lattices
Military systems and Dennings Axioms
Bell-LaPadula (BLP) Policy
Step 1 clearance/classification
Step 2 categories
Example System DG/UX
Tranquility
Controversy at a glance
3. 3 POsets Definition: A Poset (short hand for Partially Ordered Set) is a pair (A,<) where A is a set < is a partial order. That is < is reflexive: x<x for xeA < is transitive: x<y and y<z ?x<z for all x,y,zeA < is anti-symmetric: x<y and y<x ?x=y for all x,yeA Example: A B C D E < is a total order iff x<y ?x,yeA