A method for reasoning about knowledge in multilevel secure distributed systems is introduced. This method, based on a behavioral semantics for operator nets, can be used to specify a variety of security properties such as nondisclosure, integrity, and authority systems. The major attributes of the method are the intuitive nature of the specifications and the expressibility of the model, which allows statements about temporal properties and deductive capabilities of processes
Published in:
Security and Privacy, 1988. Proceedings., 1988 IEEE Symposium on
Date of Conference: 18-21 Apr 1988