2005
DOI: 10.1007/s10207-004-0046-8
|View full text |Cite
|
Sign up to set email alerts
|

Edit automata: enforcement mechanisms for run-time security policies

Abstract: We analyze the space of security policies that can be enforced by monitoring and modifying programs at run time. Our program monitors, called edit automata, are abstract machines that examine the sequence of application program actions and transform the sequence when it deviates from a specified policy. Edit automata have a rich set of transformational powers: they may terminate an application, thereby truncating the program action stream; they may suppress undesired or dangerous actions without necessarily te… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
4
1

Citation Types

2
248
0

Year Published

2005
2005
2016
2016

Publication Types

Select...
6
3
1

Relationship

1
9

Authors

Journals

citations
Cited by 283 publications
(250 citation statements)
references
References 16 publications
2
248
0
Order By: Relevance
“…Section VI shows how to represent the monitor [28] for sequential programs in our framework. Ligatti et al [29] present a general framework for security policies that can be enforced by monitoring and modifying programs at runtime. The authors introduce the notion of edit automata, i.e., monitors that can stop, suppress, and modify the behavior of programs.…”
Section: Related Workmentioning
confidence: 99%
“…Section VI shows how to represent the monitor [28] for sequential programs in our framework. Ligatti et al [29] present a general framework for security policies that can be enforced by monitoring and modifying programs at runtime. The authors introduce the notion of edit automata, i.e., monitors that can stop, suppress, and modify the behavior of programs.…”
Section: Related Workmentioning
confidence: 99%
“…The computability constraints that can further restrict a monitor's enforcement power are discussed in [14,19]; that of monitors relying upon an a priori model of the program's possible behaviour is discussed in [9] and [21].…”
Section: Related Workmentioning
confidence: 99%
“…Ligatti et al [20] present a general framework for security policies that can be enforced by monitoring and modifying programs at runtime. They introduce edit automata that enable monitors to stop, suppress, and modify the behavior of programs.…”
Section: Related Workmentioning
confidence: 99%