A Multilevel Security Model Based on Communication Channel Capacity

LIU Xiong,ZHUO Xue-jun,TANG Yong-li,DAI Yi-qi
2010-01-01
Tien Tzu Hsueh Pao/Acta Electronica Sinica
Abstract:Many typical security models have been proposed, such as the BLP model and the nondeducibility model, however, these models have some disadvantages and limitations in theoretical analysis or implementation respectively. For instance, BLP model did not take the covert channel into account, and the nondeducibility model cannot be applied to the nondeterministic systems. Considering these shortages brought about by the existing works, this paper take the properties of the covert channel as a main consideration, and propose a novel finite-information-leakage-tolerance communication channel model based on the BLP model. The proposed model finds a tradeoff between the availability and security of the practical system by adjusting the upper bound of the channel capacity of the information leakage.
What problem does this paper attempt to address?