Generic semantics specification and processing for inter-system information flow tracking

Uloženo v:
Podrobná bibliografie
Název: Generic semantics specification and processing for inter-system information flow tracking
Autoři: Birnstill, Pascal, Bier, Christoph, Wagner, P., Beyerer, Jürgen
Rok vydání: 2016
Sbírka: Publikationsdatenbank der Fraunhofer-Gesellschaft
Témata: information flow tracking, explicit flows, information flow semantics specification, distributed usage control, policy enforcement
Time: 004, 670
Popis: S.185-191 ; Data usually takes different shapes and appears as files, windows, processes' memory, network connections, etc. Information flow tracking technology keeps an eye on these different representations of a data item. Integrated with a usage control (UC) infrastructure, this allows us to enforce UC requirements on each representation of a protected data item. To enable UC enforcement in distributed settings, we need to be able to track information flows across system boundaries. In this paper we introduce a state-based information flow model for tracking explicit flows between systems equipped with UC technology. We demonstrate the applicability of our approach by means of an instantiation in the field of video surveillance, where systems are increasingly accessed via insecure mobile applications. Based on usage control and inter-system information flow tracking, we show how video data transmitted from a video surveillance server to mobile clients can be protected against illegitimate duplication and redistribution after receipt.
Druh dokumentu: conference object
Jazyk: English
Relation: International Conference on Security and Management (SAM) 2016; World Congress in Computer Science, Computer Engineering, and Applied Computing (WorldComp) 2016; International Conference on Security and Management, SAM 2016; https://publica.fraunhofer.de/handle/publica/393738
Dostupnost: https://publica.fraunhofer.de/handle/publica/393738
Přístupové číslo: edsbas.DF342231
Databáze: BASE
Popis
Abstrakt:S.185-191 ; Data usually takes different shapes and appears as files, windows, processes' memory, network connections, etc. Information flow tracking technology keeps an eye on these different representations of a data item. Integrated with a usage control (UC) infrastructure, this allows us to enforce UC requirements on each representation of a protected data item. To enable UC enforcement in distributed settings, we need to be able to track information flows across system boundaries. In this paper we introduce a state-based information flow model for tracking explicit flows between systems equipped with UC technology. We demonstrate the applicability of our approach by means of an instantiation in the field of video surveillance, where systems are increasingly accessed via insecure mobile applications. Based on usage control and inter-system information flow tracking, we show how video data transmitted from a video surveillance server to mobile clients can be protected against illegitimate duplication and redistribution after receipt.