{"title":"SDDM-a prototype of a distributed architecture for database security","authors":"C. D. Jensen, Robert M. Kiel, R. D. Verjinski","doi":"10.1109/ICDE.1989.47236","DOIUrl":null,"url":null,"abstract":"A description is given of the secure distributed data management (SDDM) system, which is a prototype of a distributed architecture for multilevel database security that meets the US Department of Defense's trusted computer system evaluation criteria at the B3 level. The distributed architecture separates data by its security classification onto multiple single-level back-end database hosts and uses distributed data-management technology to provide integrated access to the distributed multilevel database. Discretionary access control is provided by access views defined on the database. An overview of the SDDM system, particularly its security policy, design, and provisions for mandatory and discretionary access controls is provided.<<ETX>>","PeriodicalId":329505,"journal":{"name":"[1989] Proceedings. Fifth International Conference on Data Engineering","volume":" 18","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"1989-02-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"15","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"[1989] Proceedings. Fifth International Conference on Data Engineering","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICDE.1989.47236","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 15
Abstract
A description is given of the secure distributed data management (SDDM) system, which is a prototype of a distributed architecture for multilevel database security that meets the US Department of Defense's trusted computer system evaluation criteria at the B3 level. The distributed architecture separates data by its security classification onto multiple single-level back-end database hosts and uses distributed data-management technology to provide integrated access to the distributed multilevel database. Discretionary access control is provided by access views defined on the database. An overview of the SDDM system, particularly its security policy, design, and provisions for mandatory and discretionary access controls is provided.<>