A compile-time model for safe information flow in object-oriented databases

被引:0
|
作者
GendlerFishman, M
Gudes, E
机构
来源
INFORMATION SECURITY IN RESEARCH AND BUSINESS | 1997年
关键词
object-oriented databases; authorization; information flow; transactions; compile-time checking;
D O I
暂无
中图分类号
F [经济];
学科分类号
02 ;
摘要
Security is an important topic for Object-oriented databases (OODB). Discretionary authorization models do not provide the high assurance provided by Mandatory models, the latter ones, however, are too rigid for commercial applications. Therefore discretionary, information-flow control models are needed, especially when transactions containing general methods invocations are considered. This paper first reviews existing security models for object-oriented databases with and without information-flow control. Previous models relied on the run-time checks of every message transferred in the system. This paper uses a simple transaction model and a compile-time approach and presents algorithms for flow control which are applied at Rule-administration and Compile times, thus saving considerable run-time overhead. A proof for correctness is given, and the performance implications are discussed.
引用
收藏
页码:41 / 55
页数:15
相关论文
共 50 条
  • [21] Introduction to object-oriented databases
    Garvey, M.A., 1600, (31):
  • [22] THE CASE FOR OBJECT-ORIENTED DATABASES
    ATWOOD, TM
    IEEE SPECTRUM, 1991, 28 (02) : 44 - 47
  • [23] INTRODUCTION TO OBJECT-ORIENTED DATABASES
    GARVEY, MA
    JACKSON, MS
    INFORMATION AND SOFTWARE TECHNOLOGY, 1989, 31 (10) : 521 - 528
  • [24] TUTORIAL ON OBJECT-ORIENTED DATABASES
    JACKSON, MS
    INFORMATION AND SOFTWARE TECHNOLOGY, 1991, 33 (01) : 4 - 12
  • [25] INSIGHT INTO OBJECT-ORIENTED DATABASES
    KHOSHAFIAN, S
    INFORMATION AND SOFTWARE TECHNOLOGY, 1990, 32 (04) : 274 - 289
  • [26] Paraconsistency in object-oriented databases
    Bagai, R
    Kelley, SJ
    SOFT-WARE 2002: COMPUTING IN AN IMPERFECT WORLD, 2002, 2311 : 141 - 150
  • [27] OBJECT-ORIENTED PROGRAMMING AND DATABASES
    STEIN, J
    DR DOBBS JOURNAL, 1988, 13 (03): : 18 - &
  • [28] Internet object-oriented information model
    Chen, CF
    Li, ZZ
    36TH INTERNATIONAL CONFERENCE ON TECHNOLOGY OF OBJECT-ORIENTED LANGUAGES AND SYSTEMS, PROCEEDINGS, 2000, : 285 - 290
  • [29] Internet object-oriented information model
    Xi'an Jiaotong Univ, Xi'an, China
    Proceedings of the Conference on Technology of Object-Oriented Languages and Systems, TOOLS, 2000, (TOOL 36): : 285 - 290
  • [30] ON COMPILE-TIME QUERY OPTIMIZATION IN DEDUCTIVE DATABASES BY MEANS OF STATIC FILTERING
    KIFER, M
    LOZINSKII, EL
    ACM TRANSACTIONS ON DATABASE SYSTEMS, 1990, 15 (03): : 385 - 426