A high security level DBMS requires a formal specification and verification on the security model and top level specification design. The specification and verification towards SQL operations are important especially. In this paper, based on the security model and top level specification, we propose a novel approach to solve the specification and verification issues towards SQL operations. Firstly, we formally define the SQL operations in FTLS; then, we give the definitions of the simple SQL operations and propose a method to verify those simple SQL operations; finally, we transform the verification of the SQL operations in FTLS to the verification of the component simple SQL operations. The process of verification shows that our approach makes a comprehensive specification of SQL operations and simplifies the verification procedure.
목차
Abstract 1. Introduction 1.1. The Problems 1.2. Our Contributions 2. Security Model for Secure DBMS 2.1. Security Policy 2.2. Basic elements 2.3. Safety Properties 2.4. State Transition Rules 2.5. Security Definitions 3. Formal Top Level Specification for Secure DBMS 3.1. Introduction 3.2. System State 3.3. Safety Properties 3.4. SQL Operations 3.5. SQL Statements Transformation 4. Analysis and Verification for SQL Operations 4.1. Analysis and Verification for Select Operation 4.2. Analysis and Verification for Update Operation 4.3. Some Problems in Verification 5. Related Work 5.1. Formal Verification for General Systems 5.2. Formal verification for DBMS 5.3. Formal Specification for SQL 6. Conclusion References
키워드
Security ModelFormal Top Level SpecificationSQL OperationFormal Verification
저자
Zhipeng Wang [ Computer School of Sci & Tec, Huazhong University of Sci & Tec ]
Hong Zhu [ Computer School of Sci & Tec, Huazhong University of Sci & Tec ]
Meiyi Xie [ Computer School of Sci & Tec, Huazhong University of Sci & Tec ]
보안공학연구지원센터(IJDTA) [Science & Engineering Research Support Center, Republic of Korea(IJDTA)]
설립연도
2006
분야
공학>컴퓨터학
소개
1. 보안공학에 대한 각종 조사 및 연구
2. 보안공학에 대한 응용기술 연구 및 발표
3. 보안공학에 관한 각종 학술 발표회 및 전시회 개최
4. 보안공학 기술의 상호 협조 및 정보교환
5. 보안공학에 관한 표준화 사업 및 규격의 제정
6. 보안공학에 관한 산학연 협동의 증진
7. 국제적 학술 교류 및 기술 협력
8. 보안공학에 관한 논문지 발간
9. 기타 본 회 목적 달성에 필요한 사업
간행물
간행물명
International Journal of Database Theory and Application
간기
격월간
pISSN
2005-4270
수록기간
2008~2016
십진분류
KDC 505DDC 605
이 권호 내 다른 논문 / International Journal of Database Theory and Application Vol.5 No.3