Title
Extended BLP security model based on process reliability for secure Linux kernel
Abstract
To design and develop secure operating systems, the BLP (Bell-La Padula) model has been widely adopted. However user's security label in the most developed systems based on the BLP model is inherited to a process that is actual subject on behalf of the user, regardless whatever the process behavior is. So, there could be information disclosure threat or modification threat by malicious or unreliable processes even though the user is authorized in the system. These problems can be solved by defining the subject as (user process) ordered pair and by defining the process reliability. This paper presents an extended BLP (E-BLP) model in which processes are grouped into two subdivisions, common and public, and the execution of a process is controlled by DRC (Dynamic Reliability Check) to prevent the malicious behavior of the process. Therefore, this model mitigates the confidentiality threat, integrity threat, and also gives enhanced usability of the system
Year
DOI
Venue
2001
10.1109/PRDC.2001.992712
PRDC
Keywords
Field
DocType
secure operating systems,blp model,onthe blp model,developed system,extended blp security model,process reliability,secure linux kernel,dynamic reliability check,operating system kernels,computer security,bell-la padula,drc,integrity threat,secure operating system,usability,linux kernel,confidentiality threat,actual subjecton behalf,extended blp,model mitigatesthe confidentiality threat,security of data,kernel,buffer overflow,linux,information security,operating systems,security model,availability
Kernel (linear algebra),Confidentiality,Computer science,Computer security,Usability,Information security,Ordered pair,Real-time computing,Computer security model,Distributed computing,Linux kernel,Buffer overflow
Conference
ISBN
Citations 
PageRank 
0-7695-1414-6
2
0.41
References 
Authors
9
4
Name
Order
Citations
PageRank
Jung-Min Kang131.44
Wook Shin212016.72
C-G. Park320.41
Dongik Lee47714.46