In a stepwise development process, it is essential thatsystem properties that have been already investigated insome phase need not be re-investigated in later phases. Informal developments, this corresponds to the requirementthat properties are preserved under refinement. While safetyand liveness properties are indeed preserved under moststandard forms of refinement, it is well known that this is,in general, not true for information flow properties, a largeand useful class of security properties. In this article, wepropose a collection of refinement operators as a solutionto this problem. We prove that these operators preserve informationflow as well as other system properties. Thus,informatio...
We study bisimulation-based information flow security properties which are persistent, in the sense ...
We study bisimulation-based information flow security properties which are persistent, in the sense ...
In this work we employ information-flow-aware refinement to study security properties of a separatio...
In a stepwise development process, it is essential thatsystem properties that have been already ...
The systematic development of complex systems usually relies on a stepwise refinement procedure from...
We address the problem of maintaining information flow security un-der refinement and transformation...
-We address the problem of maintaining information flow security under refinement and transformation...
Abstract. We address the problem of maintaining information flow security un-der refinement and tran...
AbstractInformation flow properties, which describe confidentiality requirements, are not generally ...
“Classical” proofs of secure systems are based on reducing the hardness of one problem (defined by t...
We study bisimulation-based information flow security properties which are persistent, in the sense ...
Abstract. Formal methods emphasizes the need for a top-down approach when developing large reliable ...
Refinement is a relation on system models: a concrete model is a refinement of a more abstract model...
AbstractDetecting information flows inside a program is useful to check non-interference or independ...
In this thesis, we elaborate a uniform basis for the systematic investigation of possibilistic infor...
We study bisimulation-based information flow security properties which are persistent, in the sense ...
We study bisimulation-based information flow security properties which are persistent, in the sense ...
In this work we employ information-flow-aware refinement to study security properties of a separatio...
In a stepwise development process, it is essential thatsystem properties that have been already ...
The systematic development of complex systems usually relies on a stepwise refinement procedure from...
We address the problem of maintaining information flow security un-der refinement and transformation...
-We address the problem of maintaining information flow security under refinement and transformation...
Abstract. We address the problem of maintaining information flow security un-der refinement and tran...
AbstractInformation flow properties, which describe confidentiality requirements, are not generally ...
“Classical” proofs of secure systems are based on reducing the hardness of one problem (defined by t...
We study bisimulation-based information flow security properties which are persistent, in the sense ...
Abstract. Formal methods emphasizes the need for a top-down approach when developing large reliable ...
Refinement is a relation on system models: a concrete model is a refinement of a more abstract model...
AbstractDetecting information flows inside a program is useful to check non-interference or independ...
In this thesis, we elaborate a uniform basis for the systematic investigation of possibilistic infor...
We study bisimulation-based information flow security properties which are persistent, in the sense ...
We study bisimulation-based information flow security properties which are persistent, in the sense ...
In this work we employ information-flow-aware refinement to study security properties of a separatio...