Collaboration between MAC policies and IDS based on a meta-policy approach. Blanc, M., Briffaut, J., Lalande, J., & Toinard, C. In Smari, W. W & McQuay, W., editors, Workshop on Collaboration and Security, pages 48–55, Las Vegas, may, 2006. IEEE Computer Society.
Collaboration between MAC policies and IDS based on a meta-policy approach [link]Paper  doi  abstract   bibtex   
This paper presents a new infrastructure based on a novel meta-policy approach. This solution allows to deploy a MAC kernel within a distributed system. It is a completely decentralized solution that has strong fault tolerance properties. Despite a local control of the updates, each local policy satisfies global security properties. Our IDS approach add new security properties. It prevents any accidental or malicious update of the local policies. Moreover, the collaboration between the meta-policy and our IDS system enables to detect illegal sequences of legal operations.
@inproceedings{BLANC:2006:HAL-00081640:1,
abstract = {This paper presents a new infrastructure based on a novel meta-policy approach. This solution allows to deploy a MAC kernel within a distributed system. It is a completely decentralized solution that has strong fault tolerance properties. Despite a local control of the updates, each local policy satisfies global security properties. Our IDS approach add new security properties. It prevents any accidental or malicious update of the local policies. Moreover, the collaboration between the meta-policy and our IDS system enables to detect illegal sequences of legal operations.},
address = {Las Vegas},
annote = {Publication supported by ACI SATIN and Commissariat {\`{a}} l'Energie Atomique.},
author = {Blanc, Mathieu and Briffaut, J{\'{e}}r{\'{e}}my and Lalande, Jean-Fran{\c{c}}ois and Toinard, Christian},
booktitle = {Workshop on Collaboration and Security},
doi = {10.1109/CTS.2006.25},
editor = {Smari, Waleed W and McQuay, William},
howpublished = {COLSEC 2006},
isbn = {0-9785699-0-3},
keywords = {MAC Security policy,Operating Systems},
month = {may},
pages = {48--55},
publisher = {IEEE Computer Society},
title = {{Collaboration between MAC policies and IDS based on a meta-policy approach}},
url = {http://dx.doi.org/10.1109/CTS.2006.25},
year = {2006}
}

Downloads: 0