Top Banner
Presented by Erland Jonsson Department of Computer Science and Engineering
3

Computer Security course – lecture 9 additions

Jan 02, 2016

Download

Documents

rogan-flores

Computer Security course – lecture 9 additions. Presented by Erland Jonsson Department of Computer Science and Engineering. Bell- LaPadula pros and cons. Advantages: A subject may not downgrade information Problems: High users can never talk to low users Only confidentiality - PowerPoint PPT Presentation
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Computer  Security course  –  lecture  9 additions

Presented by

Erland JonssonDepartment of Computer Science and Engineering

Page 2: Computer  Security course  –  lecture  9 additions

Advantages: ◦ A subject may not downgrade information

Problems:◦ High users can never talk to low users◦ Only confidentiality◦ Anyone can create an object with a higher

classification◦ ”Float-up” (i.e. down-grade needed)◦ Does not address access control◦ Does not address covert channels

Principle of tranquility – Subjects and objects may not change their security level once they are instantiated

Page 3: Computer  Security course  –  lecture  9 additions

KBM – Swedish Emergency Management Ageny (Krisberedskapsmyndigheten) - Emergency Management / Leading Role[->Myndigheten för Samhällskydd och Beredskap from 2009]

PTS – National Post and Telecom Agency(Post och Telestyrelsen) – IT incidents (CERT)

FMV – Swedish Defence Material Administra-tion (Försvarets Materielverk) - certification

FRA – National Defence Radio Establish-ment (Försvarets Radioanstalt) – crypto certification