DOMAIN TYPE ENFORCEMENT TOPIC DOMAIN TYPE ENFORCEMENT Ravi Sandhu
MANDATORY CONFIGURABLE POLICY Each subject has an associated domain Each object has an associated type Domain-type enforcement (DTE) table specifies the types that can be read and written by each domain Domain-transition table (DTT) specifies which domains can be “called” from a particular domain.
DTE Table Types F G D o m a i n s U r w r V r w mandatory rights
Domain Transition Table Domains U V D o m a i n s U enter V mandatory rights
Trusted Pipeline (Boebert and Kain ’85) User Domain U Labeler Domain L Printer Domain P Docs Printer U L P U L P rw U L P enter rw enter r w DTE Table DT Table