Title
Synthesizing Enforcement Monitors wrt. the Safety-Progress Classification of Properties
Abstract
Runtime enforcement is a powerful technique to ensure that a program will respect a given security policy. We extend previous works on this topic in several directions. Firstly, we propose a generic notion of enforcement monitors based on a memory device and finite sets of control states and enforcement operations. Moreover, we specify their enforcement abilities w.r.t. the general safety-progress classification of properties. It allows a fine-grain characterization of the space of enforceable properties. Finally, we propose a systematic technique to produce an enforcement monitor from the Streett automaton recognizing a given safety, guarantee, obligation or response security property.
Year
DOI
Venue
2008
10.1007/978-3-540-89862-7_3
ICISS
Keywords
Field
DocType
synthesizing enforcement monitors wrt,enforcement monitor,enforcement abilities w,enforcement operation,streett automaton,security policy,safety-progress classification,response security property,runtime enforcement,systematic technique,powerful technique,control state
Obligation,Computer science,Computer security,Automaton,Enforcement,Security policy
Conference
Volume
ISSN
Citations 
5352
0302-9743
17
PageRank 
References 
Authors
0.79
11
3
Name
Order
Citations
PageRank
Yliès Falcone150839.21
Jean-Claude Fernandez21848.53
Laurent Mounier3118779.54