Back to Search
Start Over
A Solution to 'Confused Deputy' Problem Using RWFM Labels
- Source :
- Communications in Computer and Information Science ISBN: 9789811375606
- Publication Year :
- 2019
- Publisher :
- Springer Singapore, 2019.
-
Abstract
- A client-server architecture mapped to a multi-level security (MLS) system maintain independent access restrictions for various system resources. Traditional access control mechanisms e.g., discretionary access matrix often lead to indirect access, therefore are incapable to enforce confidentiality and integrity at process-level. The confused deputy problem is well known in this regard where an unauthorized process may influence an authorized process to manipulate a protected object. In this paper, we propose a solution to confused deputy problem using a recently proposed novel mandatory access control (MAC) based security model RWFM. We demonstrate our approach through a reference monitor that adapts the proposed solution while performing process-level security check, and prevents indirect access to isolated sensitive objects. Further, we compare our solution with the existing literature towards the end of this paper.
Details
- Database :
- OpenAIRE
- Journal :
- Communications in Computer and Information Science ISBN: 9789811375606
- Accession number :
- edsair.doi...........b0b38b22efeba9bfa73fd363a871746a
- Full Text :
- https://doi.org/10.1007/978-981-13-7561-3_5