Define the subjects objects and the access control matrix


Problem

I. A company has systems in the Development and Production. The development systems DS have lower integrity level than the production systems PS. Consider the rights r (read), w (write) and m (manage). Programmers can read, and write to the Development systems, while System Administrators have all rights on both Development and Production systems. 1.5 pages

i. Define the subjects, objects and the access control matrix.

ii. Are the read and write rules in Biba's integrity model satisfied? Explain.

iii. Programmers need to troubleshoot a problem in the Production systems. The System Administrators create a new process p in the Production Systems to copy data related to the problem and write to the Development Systems.

o Update the access control matrix with process p.
o Is Biba's integrity model satisfied? Explain.

iv. Can the situation in (iii) above violate Bell-Lapadula confidentiality model? How would you propose to fix it? ( Is Biba's integrity model satisfied?)

II. Explain why the enforcement rules of the Clark-Wilson model can emulate the Biba model. Give a simple example to illustrate your argument.

The response should include a reference list. One-inch margins, Using Times New Roman 12 pnt font, double-space and APA style of writing and citations.

Solution Preview :

Prepared by a verified Expert
Other Subject: Define the subjects objects and the access control matrix
Reference No:- TGS03166402

Now Priced at $20 (50% Discount)

Recommended (90%)

Rated (4.3/5)