6 Module 3 09 06 2023
6 Module 3 09 06 2023
CBS3002
MODULE : 3
CONFIDENTIALITY POLICY
MODULE - 2
• Confidentiality policies
• Integrity policies
• Hybrid policies
• Non-interference
• Policy composition
• International standards.
CONFIDENTIALITY POLICIES
Introduction:
1.) Bell-LaPadula
2.) Biba
(3) Auditing:
• Commercial systems emphasize recovery and
accountability.
• Auditing is the process of analyzing systems to
determine what actions took place and who
performed them.
• Hence, commercial systems must allow extensive
auditing and thus have extensive logging.
• Logging and auditing are especially important
when programs move from the development
system to the production system
Integrity Policies