Bell-LaPadula Model Flashcards
What does it mean for the Bell-LaPadula model to both discretionary and mandatory?
Bell-LaPadula combines both a simple access control matrix (ACM) which is used for specifically assigning subjects rights over objects, and the Mandatory multi-level security access control matrix (using categories and clearance levels) where the ACM is not defined.
Values in the discretionary ACM is typically defined by users on the system The mandatory acm is a desfigned for system mechanism. If a system mechanism has access to an object, then no user can change it.
What is the discretionary security property in the Bell-LaPadula model?
The discretionary security property states that a state on the system is considered safe if a subject s acts on an object (read, write), then it must have the rights to do so in the access control matrix
What is the definition of a secure state according to the Bell-LaPadula model
Any secure state is one that satisfiesd the simple security condition, the *-property, and the discretionary security property