Integration of formal and heuristic reasoning as a basis for testing and debugging computer security policy

J. Bret Michael, Edgar H. Sibley, David C. Littleman · 1993

Errors can arise in defining and evaluating computer security policy as well as in translating computer security policy into procedures.The effect of such errors in policy upon the secure operation of information systems can impose unacceptable levels of risk from the perspective of procurers and users of information systems.Relying on computer security paradigms based solely on formal methods makes it difficult if not impossible to detect and/or reason about certain classes of threats to computer security and vulnerabilities of information systems to these threats, especially for those aspects of information systems that are more readily amenable to modeling via non-formal methods.We present a paradigm integrating formal and heuristic reasoning as a basis for testing for and debugging computer security policy.To illustrate our approach, and to support our arguments, we consider the problem of reasoning about the plans of an agent who may be trying to compromise the security of an information system.

Read the paper · More papers on PaperTik