Back to Search Start Over

A Solution to 'Confused Deputy' Problem Using RWFM Labels

Authors :
R. K. Shyamasundar
Sandip Ghosal
Source :
Communications in Computer and Information Science ISBN: 9789811375606
Publication Year :
2019
Publisher :
Springer Singapore, 2019.

Abstract

A client-server architecture mapped to a multi-level security (MLS) system maintain independent access restrictions for various system resources. Traditional access control mechanisms e.g., discretionary access matrix often lead to indirect access, therefore are incapable to enforce confidentiality and integrity at process-level. The confused deputy problem is well known in this regard where an unauthorized process may influence an authorized process to manipulate a protected object. In this paper, we propose a solution to confused deputy problem using a recently proposed novel mandatory access control (MAC) based security model RWFM. We demonstrate our approach through a reference monitor that adapts the proposed solution while performing process-level security check, and prevents indirect access to isolated sensitive objects. Further, we compare our solution with the existing literature towards the end of this paper.

Details

Database :
OpenAIRE
Journal :
Communications in Computer and Information Science ISBN: 9789811375606
Accession number :
edsair.doi...........b0b38b22efeba9bfa73fd363a871746a
Full Text :
https://doi.org/10.1007/978-981-13-7561-3_5