安全信息自动取款机(SIATM)的正式完整框架与应用
Formal Integrity Framework with Application to a Secure Information ATM (SIATM)
关键词:电子信息;信息系统;安全;应用
摘 要:Information Security is traditionally treated in three main categories: Con dentiality, Integrity, and Availability. While much work has been done on modelling Con dentiality and Availability, aspects involving comprehensive modelling and quality of data integrity in complex systems appear to be, on a relative scale, much less well understood and implemented. Further, most work on Integrity and resultant implementations seems to have focussed more on a matters related to source authentication and transmission assurance. However, the quality of data aspect is becoming more critical for attention, given the increasing levels of automation of information fusion and data transformation in a globalised Cyberspace. In this paper, we survey the existing integrity models and identify shortcomings of these with regard to a general integrity framework encompassing the quality of data aspect. We then propose and formally model a new framework, illustrating the approach with reference to use cases built around the Secure Information ATM (SIATM) - a highly accreditable security system currently under development.