Fine-grained sticky provenance architecture for office documents

  • Authors:
  • Takuya Mishina;Sachiko Yoshihama;Michiharu Kudo

  • Affiliations:
  • IBM Research, Tokyo Research Laboratory, Yamato, Kanagawa, Japan;IBM Research, Tokyo Research Laboratory, Yamato, Kanagawa, Japan;IBM Research, Tokyo Research Laboratory, Yamato, Kanagawa, Japan

  • Venue:
  • IWSEC'07 Proceedings of the Security 2nd international conference on Advances in information and computer security
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

Current business situations require improved confidentiality and integrity for office documents. However, existing content management systems for office documents lack required security properties such as the *-property, or have problems such as label creep. In this paper we propose a meta-data format called sticky provenance and a fine-grained information flow control architecture using the sticky provenance. The sticky provenance contains the change history and the labels of an office document in a secure form, and it ensures the verifiability of the change history of the documents in distributed environments. The Provenance Manager, which is a key module of the architecture, reduces the label creep problem of the information flow control models with the sticky provenance. In other words, the sticky provenance and the Provenance Manager can introduce a practical fine-grained information flow control capability to office applications so that we can ensure both the confidentiality and the verifiability of office documents.