论文标题

不透明执行的扩展插入功能

Extended Insertion Functions for Opacity Enforcement

论文作者

Li, Xiaoyan, Hadjicostis, Christoforos N., Li, Zhiwu

论文摘要

不透明度是一种机密性属性,当在任何系统活动下无法向外部观察者透露给定系统的某些秘密字符串时,它就会存在。不透明度违规刺激了不透明度执法策略的研究。在其他方法论中,使用插入机制(即,允许在实际系统输出之前插入虚拟输出符号)的输出混淆机制(即插入虚拟输出符号)为了保留不透明度而插入虚拟的输出符号。本文研究并分析了更强大的扩展插入机制,该机制可以在实际系统输出之前和之后插入符号,从而为更广泛的系统提供不透明度。为了解决实际的注意事项,本文还引入了事件插入约束(即,在实际系统输出之前和/或之后只能插入特定符号的情况)。对于每种情况,我们构建一个适当的验证者,可用于获得必要的足够条件,以检查不透明度的可执行性。

Opacity is a confidentiality property that holds when certain secret strings of a given system cannot be revealed to an outside observer under any system activity. Opacity violations stimulate the study of opacity enforcement strategies. Among other methodologies, opacity has been enforced using insertion mechanisms, i.e., output obfuscation mechanisms that are allowed to insert fictitious output symbols before actual system outputs, in order to preserve opacity. This paper studies and analyzes more powerful extended insertion mechanisms, which can insert symbols before and after an actual system output, thus, providing opacity to a wider class of systems. In order to address practical considerations, the paper also introduces event insertion constraints (i.e., the case when only specific symbols can be inserted before and/or after an actual system output). For each case, we construct an appropriate verifier that can be used to obtain necessary and sufficient conditions for checking opacity enforceability.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源