Implementing commercial data integrity with secure capabilities

  • Authors:
  • Paul A. Karger

  • Affiliations:
  • Computer Laboratory, University of Cambridge, Cambridge, UK and Secure Systems Development, Digital Equipment Corporation, Littleton, MA

  • Venue:
  • SP'88 Proceedings of the 1988 IEEE conference on Security and privacy
  • Year:
  • 1988

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper examines the Clark and Wilson model for commercial data integrity and proposes an implementation based on the author's secure capability architecture. The paper shows how secure capabilities and protected subsystems are ideal for implementing commercial data integrity, but also raises areas where the Clark and Wilson model may have difficulties in actual use. The level of formal verification required appears higher than most commercial systems would be willing to try, and the user interface for specifying separation of duties appears extremely complex.