A Systems Approach to Ensuring Security in a Special-Purpose Automated Information System

IF 0.5 Q4 COMPUTER SCIENCE, INFORMATION SYSTEMS
A. S. Dubrovin, V. I. Sumin, Yu. Yu. Gromov, V. M. Tyutyunnik
{"title":"A Systems Approach to Ensuring Security in a Special-Purpose Automated Information System","authors":"A. S. Dubrovin,&nbsp;V. I. Sumin,&nbsp;Yu. Yu. Gromov,&nbsp;V. M. Tyutyunnik","doi":"10.3103/S0005105525700049","DOIUrl":null,"url":null,"abstract":"<p>A mathematical model of the subsystem of security in an automated information system with a special purpose, hierarchically decomposed by security levels, is considered, on the basis of which it is possible to develop and analyze relatively flexible rules of differentiation of access to information with high guarantee of their fulfillment with the help of the apparatus of finite nonlinear lattices. Two finite nonlinear lattices suitable for this purpose are proposed. For each, carrier, partial ordering, and algebraic operations are defined. Interpretations of these lattices are given as vector security levels, in contrast to the well-known interpretation of finite linear lattices as numerical security levels. For vector security levels, the “no read up” and “no write down” rules of the mandated security policy are defined. The equivalence of the modeling capabilities of these lattices is justified. The developed model integrates the principles of mandating and discretionary access control methods, taking subjects in the role of intermediaries between users and objects. The Bell-LaPadula model, as adapted to the formalization of security levels by finite nonlinear lattices is presented.</p>","PeriodicalId":42995,"journal":{"name":"AUTOMATIC DOCUMENTATION AND MATHEMATICAL LINGUISTICS","volume":"59 1","pages":"33 - 40"},"PeriodicalIF":0.5000,"publicationDate":"2025-05-20","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"AUTOMATIC DOCUMENTATION AND MATHEMATICAL LINGUISTICS","FirstCategoryId":"1085","ListUrlMain":"https://link.springer.com/article/10.3103/S0005105525700049","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q4","JCRName":"COMPUTER SCIENCE, INFORMATION SYSTEMS","Score":null,"Total":0}
引用次数: 0

Abstract

A mathematical model of the subsystem of security in an automated information system with a special purpose, hierarchically decomposed by security levels, is considered, on the basis of which it is possible to develop and analyze relatively flexible rules of differentiation of access to information with high guarantee of their fulfillment with the help of the apparatus of finite nonlinear lattices. Two finite nonlinear lattices suitable for this purpose are proposed. For each, carrier, partial ordering, and algebraic operations are defined. Interpretations of these lattices are given as vector security levels, in contrast to the well-known interpretation of finite linear lattices as numerical security levels. For vector security levels, the “no read up” and “no write down” rules of the mandated security policy are defined. The equivalence of the modeling capabilities of these lattices is justified. The developed model integrates the principles of mandating and discretionary access control methods, taking subjects in the role of intermediaries between users and objects. The Bell-LaPadula model, as adapted to the formalization of security levels by finite nonlinear lattices is presented.

确保专用自动化信息系统安全的系统方法
考虑了一种特殊用途自动化信息系统安全子系统的数学模型,将其按安全级别进行分层分解,在此基础上,利用有限的非线性格装置,可以制定和分析相对灵活的信息访问微分规则,并保证其实现。提出了两个适用于此目的的有限非线性格。对于每一个,都定义了载波、偏序和代数运算。这些格的解释是作为向量安全级别给出的,而不是众所周知的有限线性格作为数值安全级别的解释。对于矢量安全级别,定义了强制安全策略的“不向上读”和“不向下写”规则。这些格的建模能力是等价的。所开发的模型集成了强制和自由访问控制方法的原则,将主体作为用户和对象之间的中介。提出了适用于用有限非线性格表示安全等级的Bell-LaPadula模型。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
AUTOMATIC DOCUMENTATION AND MATHEMATICAL LINGUISTICS
AUTOMATIC DOCUMENTATION AND MATHEMATICAL LINGUISTICS COMPUTER SCIENCE, INFORMATION SYSTEMS-
自引率
40.00%
发文量
18
期刊介绍: Automatic Documentation and Mathematical Linguistics  is an international peer reviewed journal that covers all aspects of automation of information processes and systems, as well as algorithms and methods for automatic language analysis. Emphasis is on the practical applications of new technologies and techniques for information analysis and processing.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信