Back to Search Start Over

Dynamic Trusted Domain: Preventing Data Leakage of Trusted Subjects

Authors :
Zhi Ying Wang
Jiang Chun Ren
Songzhu Mei
Yong Cheng
Jiang Jiang Wu
Jun Ma
Source :
Applied Mechanics and Materials. :470-473
Publication Year :
2011
Publisher :
Trans Tech Publications, Ltd., 2011.

Abstract

The existence of trusted subjects is a major complication in implementing multilevel secure (MLS) systems. In MLS, trusted subjects are granted with privileges to perform operations possibly violating mandatory access control policies. It is difficult to prevent them from data leakage with out too strict confinement. This paper reconsiders the privilege from the view of sensitive data and presents a dynamic trusted domain (DTD) mechanism for trusted subjects. In DTD, a domain is associated with a special label structure (LabelVector) distinguishing security policies and builds an isolated environment based on virtualization for a certain trusted subject. The channel for the trusted subject to communicate with outsider is controlled by a trusted request decision maker (TRDM). Only the request satisfies the rules on domain label and security levels can be passed through.

Details

ISSN :
16627482
Database :
OpenAIRE
Journal :
Applied Mechanics and Materials
Accession number :
edsair.doi...........7510eac75cf6fadd3793a5713d1069d1
Full Text :
https://doi.org/10.4028/www.scientific.net/amm.48-49.470