|
|
|
Secure State ProcessingSean PriceThe 7th IEEE Information Assurance Workshop (IAWorkshop 2006)West Point, New York, USA, June 21-23, 2006
AbstractHost systems face a duel threat from malicious code and hostile users. The information assurance (IA) model identifies security services and countermeasures for information in the processing state. However, this is problematic when considering the dual threat. Secure State Processing is introduced as a method of extending the IA model through a synergy of policy, technology, integrity and authentication. In this model, a policy is used to identify authorized processes and provide an indication to the end user. The model also provides a method to enforce the policy by setting a rule.
|
|