Using RuleML to specify cross-domain information flow control policies

Randall J. Arvay, Duminda Wijesekera, James Bret Michael · International Conference on System of Systems Engineering · 2009

We use RuleML to write declassification policies that secure information exchanges between different security levels of disparate access control models. Such flows enable sharing task-critical information that would otherwise not be shared without human intervention. Using RuleML as a security policy specification language allows us to preserve the safety property of information flow across multiple security levels. We also provide a motivating example of our approach to dealing with this property, taken from the Maritime Domain Awareness domain.

Read the paper · More papers on PaperTik