Copyright © 1994 Published by Elsevier Science Ltd. All rights reserved.
Refereed paper
Extended labeling policies for enhanced application support
Available online 15 April 2002.
References and further reading may be available for this article. To view references and further reading you must purchase this article.
Abstract
Trusted operating systems provide a wealth of security-related functionality. In the area of labeling and access control, however, they fall somewhat short because they provide only file-level labeling and access control. Many trusted applications rely on a finer granularity of policy enforcement. This paper describes a policy and mechanism for enforcing a finer granularity of labeling and access control on files. We present our results by describing the design and prototype implementation of this policy in a UNIX operating system. We also describe the implementation of a mail system and editor that successfully use the new features supported by the policy and, through analysis, demonstrate that the policy provides improved trusted database support.
Author Keywords: Security mechanisms; Mandatory access control; Security labeling; Fine grained labeling; Security policies for application support







E-mail Article
Add to my Quick Links

Cited By in Scopus (0)





