Integrating security and real-time requirements using covert channel capacity

IEEE Transactions on Knowledge and Data Engineering(2000)

引用 98|浏览1
暂无评分
摘要
Database systems for real-time applications must satisfy timing constraints associated with transactions in addition to maintaining data consistency. In addition to real-time requirements, security is usually required in many applications. Multi-level security requirements introduce a new dimension to transaction processing in real-time database systems. In this paper, we argue that, due to the conflicting goals of each requirement, tradeoffs need to be made between security and timeliness. We first define mutual information, a measure of the degree to which security is being satisfied by a system. A secure two-phase locking protocol is then described and a scheme is proposed to allow partial violations of security for improved timeliness. Analytical expressions for the mutual information of the resultant covert channel are derived, and a feedback control scheme is proposed that does not allow the mutual information to exceed a specified upper bound. Results showing the efficacy of the scheme obtained through simulation experiments are also discussed
更多
查看译文
关键词
access protocols,channel capacity,concurrency control,data integrity,database management systems,feedback,real-time systems,security of data,timing,transaction processing,concurrency control,covert channel capacity,data consistency,feedback control scheme,multi-level security requirements,mutual information,partial security violations,real-time database systems,real-time requirements,secure two-phase locking protocol,simulation,timeliness,tradeoffs,transaction processing,transaction timing constraints,upper bound
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要