Research Article
On the Definition and Policies of Confidentiality
@INPROCEEDINGS{10.1109/IAS.2007.20, author={Johs Hansen Hammer and Gerardo Schneider}, title={On the Definition and Policies of Confidentiality}, proceedings={3rd International ICST Symposium on Information Assurance and Security}, publisher={IEEE}, proceedings_a={IAS}, year={2007}, month={9}, keywords={confidentiality norms policies.}, doi={10.1109/IAS.2007.20} }
- Johs Hansen Hammer
Gerardo Schneider
Year: 2007
On the Definition and Policies of Confidentiality
IAS
IEEE
DOI: 10.1109/IAS.2007.20
Abstract
In this paper we propose a more general definition of confidentiality, as an aspect of information security including information flow control. We discuss central aspects of confidentiality and their relation with norms and policies, and we introduce a language, with a deontic flavor, to express such norms and policies. Our language may be regarded as a first step towards a formal specification of security policies for confidentiality. We provide a number of examples of useful norms on confidentiality, and we discuss confidentiality policies from real scenarios.
Copyright © 2007–2024 IEEE