The Experts below are selected from a list of 2394 Experts worldwide ranked by ideXlab platform

Sang H Son - One of the best experts on this subject based on the ideXlab platform.

  • multiversion locking protocol with freezing for secure real time database systems
    IEEE Transactions on Knowledge and Data Engineering, 2002
    Co-Authors: Chanjung Park, Seog Park, Sang H Son
    Abstract:

    Database systems for real-time applications must satisfy timing constraints associated with transactions. Typically, a timing constraint is expressed in the form of a deadline and is represented as a priority to be used by schedulers. Recently, Security has become another important issue in many real-time applications. In many systems, sensitive information is shared by multiple users with different levels of Security Clearance. As more advanced database systems are being used in applications that need to support timeliness while managing sensitive information, there is an urgent need to develop protocols for concurrency control in transaction management that satisfy both timing and Security requirements. In this paper, we propose a new multiversion concurrency control protocol that ensures that both Security and real-time requirements are met. The proposed protocol is primarily based on locking. However, in order to satisfy timing constraints and Security requirements, a new method, called the freezing method, is proposed. In order to show that our protocol provides a higher degree of concurrency than existing multiversion protocols, we define a new serializability for multiversion concurrency control, called FR-serializability, which is more general than traditional serializability. We present several examples to illustrate the behavior of our protocol, along with performance comparisons with other protocols. The simulation results show significant performance improvement of the new protocol.

  • priority driven secure multiversion locking protocol for real time secure database systems
    Proceedings of the IFIP TC11 WG11.3 Eleventh International Conference on Database Securty XI: Status and Prospects, 1997
    Co-Authors: Chanjung Park, Seog Park, Sang H Son
    Abstract:

    Database systems for real-time applications must satisfy timing constraints associated with transactions. Typically a timing constraint is expressed in the form of a deadline and is represented by a priority to be used by schedulers. In many real-time applications, Security is another important requirement, since the system maintains sensitive information to be shared by multiple users with different levels of Security Clearance. As more advanced database systems are being used in applications that need to support timeliness while managing sensitive information, protocols that satisfy both requirements need to be developed.

Chanjung Park - One of the best experts on this subject based on the ideXlab platform.

  • multiversion locking protocol with freezing for secure real time database systems
    IEEE Transactions on Knowledge and Data Engineering, 2002
    Co-Authors: Chanjung Park, Seog Park, Sang H Son
    Abstract:

    Database systems for real-time applications must satisfy timing constraints associated with transactions. Typically, a timing constraint is expressed in the form of a deadline and is represented as a priority to be used by schedulers. Recently, Security has become another important issue in many real-time applications. In many systems, sensitive information is shared by multiple users with different levels of Security Clearance. As more advanced database systems are being used in applications that need to support timeliness while managing sensitive information, there is an urgent need to develop protocols for concurrency control in transaction management that satisfy both timing and Security requirements. In this paper, we propose a new multiversion concurrency control protocol that ensures that both Security and real-time requirements are met. The proposed protocol is primarily based on locking. However, in order to satisfy timing constraints and Security requirements, a new method, called the freezing method, is proposed. In order to show that our protocol provides a higher degree of concurrency than existing multiversion protocols, we define a new serializability for multiversion concurrency control, called FR-serializability, which is more general than traditional serializability. We present several examples to illustrate the behavior of our protocol, along with performance comparisons with other protocols. The simulation results show significant performance improvement of the new protocol.

  • priority driven secure multiversion locking protocol for real time secure database systems
    Proceedings of the IFIP TC11 WG11.3 Eleventh International Conference on Database Securty XI: Status and Prospects, 1997
    Co-Authors: Chanjung Park, Seog Park, Sang H Son
    Abstract:

    Database systems for real-time applications must satisfy timing constraints associated with transactions. Typically a timing constraint is expressed in the form of a deadline and is represented by a priority to be used by schedulers. In many real-time applications, Security is another important requirement, since the system maintains sensitive information to be shared by multiple users with different levels of Security Clearance. As more advanced database systems are being used in applications that need to support timeliness while managing sensitive information, protocols that satisfy both requirements need to be developed.

Brenda S Farrell - One of the best experts on this subject based on the ideXlab platform.

  • personnel Security Clearances an outcome focused strategy is needed to guide implementation of the reformed Clearance process
    2009
    Co-Authors: Brenda S Farrell, David E Moser, Lori Atkinson, David M Adams, Sara Cradic, Susan Ditto, Cindy Gilbert, Greg Marchand, Shannin Oneill, Sarah Veale
    Abstract:

    Abstract : Since 1997, federal agencies have followed a common set of personnel Security investigative standards and adjudicative guidelines for determining whether servicemembers, federal workers, private industry personnel, and others are eligible to receive Security Clearances. Security Clearances are required for access to certain national Security information, which is classified at one of three levels: top secret, secret, or confidential. The level of classification denotes the degree of protection required for information and the amount of damage that unauthorized disclosure could reasonably cause to national Security. The degrees of expected damage that unauthorized disclosure could reasonably be expected to cause are "exceptionally grave damage" for top secret information, "serious damage" for secret information, and "damage" for confidential information. We have previously reported problems-including significant delays in processing Clearances-associated with DOD's Security Clearance processes, and in 2005, 2007, and again in 2009, we identified not only delays in completing the end-to-end Clearance processing but also incomplete investigative and adjudicative reports. More recently, we reported that although the executive branch has met current IRTPA timeliness requirements-under which adjudicative agencies are to make a determination on at least 80 percent of all applications for a Security Clearance within 120 days, on average, after the date of receipt of the application-executive branch reports to Congress do not capture the full range of time that OPM and DOD took to make Clearance determinations.

  • personnel Security Clearances preliminary observations on joint reform efforts to improve the governmentwide Clearance eligibility process
    2008
    Co-Authors: Brenda S Farrell
    Abstract:

    Abstract : As requested, my statement today will address our initial observations on (1) elements of the most recent Security Clearance reform efforts and (2) the extent to which the recent reform efforts address key factors that should be considered in efforts to reform the Security Clearance process. We also identified best practices that agencies can use to successfully transform their cultures and, accordingly, can guide the implementation of these personnel Security Clearance reform efforts.

  • Personnel Clearances. Key Factors for Reforming the Security Clearance Process
    2008
    Co-Authors: Brenda S Farrell
    Abstract:

    Abstract : Efforts to reform personnel Security Clearance processes should consider, among other things, the following four key factors: (1) a strong requirements-determination process, (2) quality in all Clearance processes, (3) metrics to provide a fuller picture of Clearance processes, and (4) long-term funding requirements of Security Clearance reform. In February 2008, GAO noted that a sound requirements process is important because requesting a Clearance for a position in which it will not be needed, or in which a lower-level Clearance would be sufficient, will increase both costs and investigative workload unnecessarily. For example, the cost of obtaining and maintaining a top secret Clearance for 10 years is approximately 30 times greater than the cost of obtaining and maintaining a secret Clearance for the same period. Also, changing a position's Clearance level from secret to top secret increases the investigative workload for that position about 20-fold.

  • Personnel Clearances: Key Factors to Consider in Efforts to Reform Security Clearance Processes
    2008
    Co-Authors: Brenda S Farrell, Jack E. Edwards, James P Klein, Joanne Landesman, Charles Perdue, Karen Thornton, Stephen K. Woods
    Abstract:

    Abstract : In 2004, Congress passed the Intelligence Reform and Terrorism Prevention Act to reform Security Clearance processes. Much of GAO's experience in evaluating personnel Security Clearance processes over the decades has consisted of examining the Department of Defense's (DoD) program, which maintains about 2.5 million Clearances on service members, DoD civilian employees, legislative branch employees, and industry personnel working for DoD and 23 other federal agencies. Long-standing delays in processing applications -- and other problems in DoD's Clearance program -- led GAO to designate it a high-risk area in 2005. GAO also has documented Clearance-related problems in other agencies. For this hearing, GAO was asked to identify key factors that could be applied in personnel Security Clearance reform efforts. To identify key factors, GAO drew upon its past reports and institutional knowledge. For those reports, GAO reviewed laws, executive orders, policies, reports, and other documentation related to the Security Clearance process; examined samples of cases of personnel granted top secret eligibility; compared documentation in those sampled cases against federal standards; and interviewed a range of cognizant government officials.

Seog Park - One of the best experts on this subject based on the ideXlab platform.

  • multiversion locking protocol with freezing for secure real time database systems
    IEEE Transactions on Knowledge and Data Engineering, 2002
    Co-Authors: Chanjung Park, Seog Park, Sang H Son
    Abstract:

    Database systems for real-time applications must satisfy timing constraints associated with transactions. Typically, a timing constraint is expressed in the form of a deadline and is represented as a priority to be used by schedulers. Recently, Security has become another important issue in many real-time applications. In many systems, sensitive information is shared by multiple users with different levels of Security Clearance. As more advanced database systems are being used in applications that need to support timeliness while managing sensitive information, there is an urgent need to develop protocols for concurrency control in transaction management that satisfy both timing and Security requirements. In this paper, we propose a new multiversion concurrency control protocol that ensures that both Security and real-time requirements are met. The proposed protocol is primarily based on locking. However, in order to satisfy timing constraints and Security requirements, a new method, called the freezing method, is proposed. In order to show that our protocol provides a higher degree of concurrency than existing multiversion protocols, we define a new serializability for multiversion concurrency control, called FR-serializability, which is more general than traditional serializability. We present several examples to illustrate the behavior of our protocol, along with performance comparisons with other protocols. The simulation results show significant performance improvement of the new protocol.

  • priority driven secure multiversion locking protocol for real time secure database systems
    Proceedings of the IFIP TC11 WG11.3 Eleventh International Conference on Database Securty XI: Status and Prospects, 1997
    Co-Authors: Chanjung Park, Seog Park, Sang H Son
    Abstract:

    Database systems for real-time applications must satisfy timing constraints associated with transactions. Typically a timing constraint is expressed in the form of a deadline and is represented by a priority to be used by schedulers. In many real-time applications, Security is another important requirement, since the system maintains sensitive information to be shared by multiple users with different levels of Security Clearance. As more advanced database systems are being used in applications that need to support timeliness while managing sensitive information, protocols that satisfy both requirements need to be developed.

Mizuho Iwaihara - One of the best experts on this subject based on the ideXlab platform.

  • efficient database driven evaluation of Security Clearance for federated access control of dynamic xml documents
    Database Systems for Advanced Applications, 2010
    Co-Authors: Erwin Leonardi, Sourav S Bhowmick, Mizuho Iwaihara
    Abstract:

    Achieving data Security over cooperating web services is becoming a reality, but existing xml access control architectures do not consider this federated service computing. In this paper, we consider a federated access control model, in which Data Provider and Policy Enforcers are separated into different organizations; the Data Provider is responsible for evaluating criticality of requested xml documents based on co-occurrence of Security objects, and issuing Security Clearances. The Policy Enforcers enforce access control rules reflecting their organization-specific policies. A user’s query is sent to the Data Provider and she needs to obtain a permission from the Policy Enforcer in her organization to read the results of her query. The Data Provider evaluates the query and also evaluate criticality of the query, where evaluation of sensitiveness is carried out by using Clearance rules. In this setting, we present a novel approach, called the diff approach, to evaluate Security Clearance by the Data Provider. Our technique is build on top of relational framework and utilizes pre-evaluated Clearances by taking the differences (or deltas) between query results.