pith. sign in

arxiv: 1305.2136 · v1 · pith:3G22XIBEnew · submitted 2013-05-09 · 💻 cs.CR

MAP-REDUCE Runtime Enforcement of Information Flow Policies

classification 💻 cs.CR
keywords enforcementflowinformationpropertiesframeworkinputsmap-reducearchitecture
0
0 comments X
read the original abstract

We propose a flexible framework that can be easily customized to enforce a large variety of information flow properties. Our framework combines the ideas of secure multi-execution and map-reduce computations. The information flow property of choice can be obtained by simply changes to a map (or reduce) program that control parallel executions. We present the architecture of the enforcement mechanism and its customizations for non-interference (NI) (from Devriese and Piessens) and some properties proposed by Mantel, such as removal of inputs (RI) and deletion of inputs (DI), and demonstrate formally soundness and precision of enforcement for these properties.

This paper has not been read by Pith yet.

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.