Brain Dump

Security System

Tags
security

A set of goals defined in a system in the presence of an adversary. The adversary will try to violate or bypass our intended goals and a secure system is one which obeys the security policy, regardless of the adversaries actions.

Divided into [see page 44, three] parts:

PartDescription
PolicyConfidentiality, integrity and availability
Threat ModelAssumptions about adversary, how they might act
MechanismHow to achieve the goals (software/hardware)

Note: we may also think of threats in terms of [see page 45, security requirements].