Security correctness for secure nested transactions: position paper

  • Authors:
  • Dominic Duggan;Ye Wu

  • Affiliations:
  • Stevens Institute of Technology, Hoboken, NJ;Tencent, Inc., ShenZhen, GuangDong, P. R. China

  • Venue:
  • Proceedings of the 7th Workshop on Programming Languages and Analysis for Security
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

This article considers the synthesis of two long-standing lines of research in computer security: security correctness for multilevel databases, and language-based security. The motivation is an approach to supporting end-to-end security for a wide class of enterprise applications, those of concurrent transactional applications. The approach extends nested transactions with retroactive abort, a new form of semantics for transactional execution, motivated by security concerns. A semantics is given in terms of a local constrained labelled transition system, the TauOne calculus. This allows a noninterference result to be verified based on adapting results on observational equivalence from concurrency theory.