{"title":"Seeing the Real World: Sharing Protected Data in Real Time","authors":"J. James, F. Mabry, Kevin L. Huggins","doi":"10.1109/HICSS.2012.518","DOIUrl":null,"url":null,"abstract":"We describe a new capability for \"owners\" of protected data to quickly and securely share real time data among networked decision-support and real-time control devices with whom the \"owners\" of the data have explicitly decided to \"share the data. The service is based upon implementation of a recent formal definition and mathematical result (James et al. 2009) derived from the decades-old Bell-LaPadula information security result (Bell and LaPadula, 1973). The service provides decision makers a means of securely and automatically sharing critical information across security barriers based upon declaration of sharing policies. The declaration and implementation of information sharing policies based upon a need-to-share has been shown to be compatible with information protection policies based upon a need-to-know. Indeed, the implementation of the need-to-share service is based upon extending the mathematical foundations of need-to-know information security systems (the Bell-LaPadula result of 1973).","PeriodicalId":380801,"journal":{"name":"2012 45th Hawaii International Conference on System Sciences","volume":"41 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2012-01-04","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"4","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2012 45th Hawaii International Conference on System Sciences","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/HICSS.2012.518","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 4
Abstract
We describe a new capability for "owners" of protected data to quickly and securely share real time data among networked decision-support and real-time control devices with whom the "owners" of the data have explicitly decided to "share the data. The service is based upon implementation of a recent formal definition and mathematical result (James et al. 2009) derived from the decades-old Bell-LaPadula information security result (Bell and LaPadula, 1973). The service provides decision makers a means of securely and automatically sharing critical information across security barriers based upon declaration of sharing policies. The declaration and implementation of information sharing policies based upon a need-to-share has been shown to be compatible with information protection policies based upon a need-to-know. Indeed, the implementation of the need-to-share service is based upon extending the mathematical foundations of need-to-know information security systems (the Bell-LaPadula result of 1973).
我们描述了受保护数据的“所有者”在网络决策支持和实时控制设备之间快速安全地共享实时数据的新功能,数据的“所有者”已明确决定与这些设备“共享数据”。该服务基于最近的正式定义和数学结果(James et al. 2009)的实现,这些结果来源于几十年前的Bell-LaPadula信息安全结果(Bell and LaPadula, 1973)。该服务为决策者提供了一种基于共享策略声明的跨安全屏障安全自动共享关键信息的方法。已经证明,基于共享需要的信息共享策略的声明和实现与基于了解需要的信息保护策略是兼容的。实际上,共享需求服务的实现是基于扩展“需要知道”信息安全系统的数学基础(1973年的Bell-LaPadula结果)。