Algorithmic Verification of Intransitive Noninterference for 3-Domain Security Policies with A Sat Solver

Liu Zhifeng,Zhou Conghua,Ge Yun,Zhang Dong
DOI: https://doi.org/10.12785/amis/070521
2013-01-01
Applied Mathematics & Information Sciences
Abstract:In this paper we propose an automated verification approach to checking intransitive noninterference for deterministic finite state systems. Our approach is based on the counterexamples search verification strategy, and is conducted in gradual manner. It produces counterexamples of minimal length. Further, we reduce the counterexamples search to propositional satisfiability. For the case that there are no counterexamples, we also introduce the window induction proof method in order to avoid considering unnecessary iterations, and show that the induction proof can be performed by the boolean decision procedure. In addition, based on graph-theoretic properties of systems we propose an over-approximation to the length of the smallest counterexample, and the over-approximation can also be checked by the boolean decision procedure.
What problem does this paper attempt to address?