전자 거래에서 보호 영역을 기반으로 하는 정보 흐름 보안 방법
An Information Flow Security Based on Protected Area in eCommerce
- 한국전자거래학회
- The Journal of Society for e-Business Studies
- Vol.15 No.1
-
2010.011 - 16 (16 pages)
- 0
Confidentiality is one of the most important requirements of information protection systems. The access control technique has been used to provide confidentiality, but it has fundamental problems in that it cannot prevent violations of confidentiality committed by authorized users. Information flow control is a technique introduced to resolve such problems, and many approaches based on programming languages have been proposed. However, it is not easy for a programmer to implement the technique at the source code level. Furthermore, the practicality of information flow control is difficult to demonstrate because it does not provide control over programs that have already been developed. This paper proposes a method that enables a practical information flow control through using a protected area, a separate part of computer system storage. Case studies are given to show its usefulness.
(0)
(0)