• Home
  • Search
  • Modeling and Controlling Downgrading Operations in Information Systems
  • Cite Icon3
  • https://doi.org/10.1109/sitis.2009.66Copy DOI Icon

Modeling and Controlling Downgrading Operations in Information Systems

  • Oct 23, 2009
  • Julien A Thomas +2 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

In existing systems, information are protected by security models that control the accesses to the information, depending on their security level. In such systems, allowing accesses that were previously denied by diminishing the security level of the information is called downgrading. Controlling this downgrade of sensitive information is an important issue in computer security, as it requires the definition of formal security models able to express contextual authorisations for some information flows. In traditional security models, information downgrading is however most of the time not taken into account and must be managed by external systems. In some recent security models, information downgrading is defined, but for specific security policies, which limits the downgrading controls. In order to be able to express a generic information downgrading control, we present in this article a formalization of the different concepts of downgrading and we propose a model to specify and control downgrade operations. Contrary to existing downgrading models, our model relies on an abstract security policy in order to define downgrading controls that are not restricted to specific scenarios.

Similar Papers
  • Research Article

МЕТОДИЧЕСКИЕ ПОЛОЖЕНИЯ ПО ВЕРОЯТНОСТНОМУ ПРОГНОЗИРОВАНИЮ КАЧЕСТВА ФУНКЦИОНИРОВАНИЯ ИНФОРМАЦИОННЫХ СИСТЕМ. Часть 3. МОДЕЛИРОВАНИЕ СЛОЖНЫХ СИСТЕМ. ИНТЕГРАЛЬНЫЙ АНАЛИЗ

  • Jan 01, 2025
  • Voprosy kiberbezopasnosti
  • A.I Kostogryzov +2
  • Conference Article
  • Citations15

New security paradigms

  • Jan 01, 1993
  • John Dobson
  • Research Article

Report on the computer security foundations workshop VI

  • Oct 01, 1993
  • ACM SIGSAC Review
  • James W Gray
  • Conference Article

Analysis of the Expressive Power of DIFC Model Based on Temporal Logic

  • Jul 20, 2022
  • Zhi Yang +5
  • PDF
  • Research Article

ПРАВОВЕ РЕГУЛЮВАННЯ ФУНКЦІОНУВАННЯ ІНФОРМАЦІЙНИХ СИСТЕМ У МЕЖАХ ШЕНГЕНСЬКОГО ПРОСТОРУ

  • Jan 01, 2017
  • Actual Problems of International Relations
  • N Mushak
  • Book Chapter

Reviewing the Security Features in Contemporary Security Policies and Models for Multiple Platforms

  • Jan 01, 2018
  • Omkar Badve +2
  • Book Chapter
  • Citations96

Fundamentals of Network Security

  • Feb 28, 2020
  • John E Canavan
  • Research Article
  • Citations5

Information System and Risk Reassessment

  • Jan 01, 2010
  • Issues in Informing Science and Information Technology
  • Božo Nikolic +1
  • Conference Article
  • Citations6

A policy driven, human oriented information security model: a case study in UAE banking sector

  • Nov 01, 2019
  • Khalid Eisa Haidar Abdalla Alhosani +4
  • Conference Article
  • Citations5

Hidden identification for operators of information-processing systems by heart rate variability in the course of professional activity

  • Nov 01, 2014
  • B N Epifantsev +2
  • Research Article
  • Citations30

Word sense disambiguation for spam filtering

  • Dec 28, 2011
  • Electronic Commerce Research and Applications
  • Carlos Laorden +4
  • Conference Article
  • Citations14

A distributed approach for intrusion detection systems

  • Apr 19, 2004
  • A Berqia +1
  • Book Chapter
  • Citations4

Closing the Gap between the Specification and Enforcement of Security Policies

  • Jan 01, 2014
  • José-Miguel Horcas +2
  • Book Chapter
  • Citations3

Using Soft Systems Methodology to Facilitate the Development of a Computer Security Teaching Module

  • Jan 01, 2001
  • J Biggam +1
  • Conference Article
  • Citations1

SSDR - Reconfigurable Firewall: Reconfiguration Model Impact

  • Apr 01, 2008
  • Fabio Dacencio Pereira +1
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.