A look at multipolicy research today and some proposed directions for tomorrow

Eric V. Leighninger · ACM SIGSAC Review · 1992

Most information systems which we try to model from a security perspective are implicitly governed by multiple security policies, hereafter called multipolicies. This stems from the fact that these systems generally support people-oriented activities which have different security relevant characteristics and are regulated by varying rules depending upon the roles and functions of individuals as well as the contexts of tasks performed by them. Such systems are evident in a variety of commercial and government enterprises. Examples of multipolicy environments include trusted software programming support environments, banking systems, interservice military programs such as SDI, international military organizations such as NATO, medical information systems, and multinational corporations to mention a few.

Read the paper · More papers on PaperTik